CVE Alert: CVE-2025-24990 – Microsoft – Windows 11 Version 25H2
CVE-2025-24990 HIGHExploitation active Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported...
CVE-2025-24990 HIGHExploitation active Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported...
CVE-2025-55321 HIGHNo exploitation known Improper neutralization of input during web page generation ('cross-site scripting') in Azure Monitor allows an authorized...
CVE-2025-59271 HIGHNo exploitation known Redis Enterprise Elevation of Privilege Vulnerability CVSS v3.1 (8.7) Vendor Microsoft, Microsoft Product Azure Cache for...
CVE-2025-59247 HIGHNo exploitation known Azure PlayFab Elevation of Privilege Vulnerability CVSS v3.1 (8.8) Vendor Microsoft Product Azure PlayFab Versions N/A...
CVE-2021-43226 HIGHExploitation active Windows Common Log File System Driver Elevation of Privilege Vulnerability CVSS v3.1 (7.8) Vendor Microsoft, Microsoft, Microsoft,...
CVE-2025-59216 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an...
CVE-2025-59220 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an...
CVE-2025-59215 HIGHNo exploitation known Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. CVSS...
CVE-2025-54110 HIGHNo exploitation known Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally. CVSS...
CVE-2025-54106 HIGHNo exploitation known Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker...
CVE-2025-54111 HIGHNo exploitation known Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges...
CVE-2025-54108 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc)...
CVE-2025-54112 HIGHNo exploitation known Use after free in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally....
CVE-2025-54105 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows...
CVE-2025-54103 HIGHNo exploitation known Use after free in Windows Management Services allows an unauthorized attacker to elevate privileges locally. CVSS...
CVE-2025-54102 HIGHNo exploitation known Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges...
CVE-2025-54098 HIGHNo exploitation known Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally. CVSS v3.1...
CVE-2025-54093 HIGHNo exploitation known Time-of-check time-of-use (toctou) race condition in Windows TCP/IP allows an authorized attacker to elevate privileges locally....
CVE-2025-54091 HIGHNo exploitation known Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to elevate privileges locally. CVSS...
CVE-2025-54092 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized...
CVE-2025-54099 HIGHNo exploitation known Stack-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate...
CVE-2025-53807 HIGHNo exploitation known Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an...
CVE-2025-53805 HIGHNo exploitation known Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a...
CVE-2025-49734 HIGHNo exploitation known Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to...