Page 6 of 498 results (0.013 seconds)

CVSS: 6.6EPSS: 0%CPEs: 17EXPL: 0

14 Jan 2025 — Windows Recovery Environment Agent Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21202 • CWE-284: Improper Access Control •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 0

14 Jan 2025 — Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21207 • CWE-400: Uncontrolled Resource Consumption •

CVSS: 7.8EPSS: 0%CPEs: 9EXPL: 0

14 Jan 2025 — Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability Microsoft Windows Hyper-V NT Kernel Integration VSP contains a use-after-free vulnerability that allows a local attacker to gain SYSTEM privileges. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21335 • CWE-416: Use After Free •

CVSS: 7.8EPSS: 0%CPEs: 26EXPL: 0

14 Jan 2025 — Microsoft Message Queuing Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21220 • CWE-908: Use of Uninitialized Resource •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 0

14 Jan 2025 — Windows Remote Desktop Services Denial of Service Vulnerability Windows Remote Desktop Services Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21330 • CWE-400: Uncontrolled Resource Consumption •

CVSS: 5.0EPSS: 0%CPEs: 26EXPL: 0

14 Jan 2025 — MapUrlToZone Security Feature Bypass Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21328 • CWE-41: Improper Resolution of Path Equivalence •

CVSS: 5.0EPSS: 0%CPEs: 26EXPL: 0

14 Jan 2025 — MapUrlToZone Security Feature Bypass Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21329 • CWE-41: Improper Resolution of Path Equivalence •

CVSS: 6.2EPSS: 0%CPEs: 21EXPL: 0

14 Jan 2025 — Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21278 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 7.8EPSS: 0%CPEs: 26EXPL: 0

14 Jan 2025 — Windows NTLM Spoofing Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21217 • CWE-693: Protection Mechanism Failure •

CVSS: 7.8EPSS: 0%CPEs: 26EXPL: 0

14 Jan 2025 — Windows upnphost.dll Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21389 • CWE-400: Uncontrolled Resource Consumption •