Search
Search Results (309777 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-54912 | 1 Microsoft | 6 Bitlocker, Windows, Windows 10 and 3 more | 2025-09-15 | 7.8 High |
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-54902 | 1 Microsoft | 11 365, 365 Apps, Excel and 8 more | 2025-09-15 | 7.8 High |
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-53803 | 1 Microsoft | 5 Windows, Windows 10, Windows 11 and 2 more | 2025-09-15 | 5.5 Medium |
Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclose information locally. | ||||
CVE-2025-54907 | 1 Microsoft | 8 365, 365 Apps, Office and 5 more | 2025-09-15 | 7.8 High |
Heap-based buffer overflow in Microsoft Office Visio allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-54092 | 1 Microsoft | 7 Hyper-v, Windows, Windows 10 and 4 more | 2025-09-15 | 7.8 High |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-54903 | 1 Microsoft | 13 365, 365 Apps, Excel and 10 more | 2025-09-15 | 7.8 High |
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-53805 | 1 Microsoft | 6 Internet Information Services, Windows, Windows 11 and 3 more | 2025-09-15 | 7.5 High |
Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a network. | ||||
CVE-2025-54899 | 1 Microsoft | 12 365, 365 Apps, Excel and 9 more | 2025-09-15 | 7.8 High |
Free of memory not on the heap in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-54895 | 1 Microsoft | 5 Windows, Windows 10, Windows 11 and 2 more | 2025-09-15 | 7.8 High |
Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-54908 | 1 Microsoft | 7 365 Apps, Apps, Office and 4 more | 2025-09-15 | 7.8 High |
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-54904 | 1 Microsoft | 13 365, 365 Apps, Excel and 10 more | 2025-09-15 | 7.8 High |
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-54091 | 1 Microsoft | 6 Hyper-v, Windows, Windows 10 and 3 more | 2025-09-15 | 7.8 High |
Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-54901 | 1 Microsoft | 8 365, 365 Apps, Excel and 5 more | 2025-09-15 | 5.5 Medium |
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | ||||
CVE-2025-55227 | 1 Microsoft | 5 Sql Server, Sql Server 2016, Sql Server 2017 and 2 more | 2025-09-15 | 8.8 High |
Improper neutralization of special elements used in a command ('command injection') in SQL Server allows an authorized attacker to elevate privileges over a network. | ||||
CVE-2025-53809 | 1 Microsoft | 4 Windows, Windows 11, Windows Server and 1 more | 2025-09-15 | 6.5 Medium |
Improper input validation in Windows Local Security Authority Subsystem Service (LSASS) allows an authorized attacker to deny service over a network. | ||||
CVE-2025-54896 | 1 Microsoft | 12 365, 365 Apps, Excel and 9 more | 2025-09-15 | 7.8 High |
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-54115 | 1 Microsoft | 7 Hyper-v, Windows, Windows 10 and 4 more | 2025-09-15 | 7 High |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-54917 | 1 Microsoft | 5 Windows, Windows 10, Windows 11 and 2 more | 2025-09-15 | 4.3 Medium |
Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network. | ||||
CVE-2025-55224 | 1 Microsoft | 15 Hyper-v, Windows, Windows 10 and 12 more | 2025-09-15 | 7.8 High |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to execute code locally. | ||||
CVE-2025-54898 | 1 Microsoft | 12 365, 365 Apps, Excel and 9 more | 2025-09-15 | 7.8 High |
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. |