CVE-2025-21292 – Windows Search Service Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21292
14 Jan 2025 — Windows Search Service Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21292 • CWE-94: Improper Control of Generation of Code ('Code Injection') •
CVE-2025-21287 – Windows Installer Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21287
14 Jan 2025 — Windows Installer Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21287 • CWE-269: Improper Privilege Management •
CVE-2025-21286 – Windows Telephony Service Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21286
14 Jan 2025 — Windows Telephony Service Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21286 • CWE-122: Heap-based Buffer Overflow •
CVE-2025-21276 – Windows MapUrlToZone Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2025-21276
14 Jan 2025 — Windows MapUrlToZone Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21276 • CWE-191: Integer Underflow (Wrap or Wraparound) CWE-693: Protection Mechanism Failure •
CVE-2025-21275 – Windows App Package Installer Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21275
14 Jan 2025 — Windows App Package Installer Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21275 • CWE-285: Improper Authorization •
CVE-2025-21274 – Windows Event Tracing Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2025-21274
14 Jan 2025 — Windows Event Tracing Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21274 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •
CVE-2025-21273 – Windows Telephony Service Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2025-21273
14 Jan 2025 — Windows Telephony Service Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21273 • CWE-122: Heap-based Buffer Overflow •
CVE-2025-21189 – MapUrlToZone Security Feature Bypass Vulnerability
https://notcve.org/view.php?id=CVE-2025-21189
14 Jan 2025 — MapUrlToZone Security Feature Bypass Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21189 • CWE-41: Improper Resolution of Path Equivalence •
CVE-2025-21261 – Windows Digital Media Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21261
14 Jan 2025 — Windows Digital Media Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21261 • CWE-125: Out-of-bounds Read •
CVE-2025-21256 – Windows Digital Media Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2025-21256
14 Jan 2025 — Windows Digital Media Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21256 • CWE-122: Heap-based Buffer Overflow CWE-125: Out-of-bounds Read •