CVE-2025-32164 |
Description: Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in maennchen1.de m1.DownloadList. This issue affects m1.DownloadList: from n/a through 0.21.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
April 8th, 2025 (14 days ago)
|
CVE-2025-29821 |
Description: Improper input validation in Dynamics Business Central allows an authorized attacker to disclose information locally.
CVSS: MEDIUM (5.5) EPSS Score: 0.06%
April 8th, 2025 (14 days ago)
|
CVE-2025-29819 |
Description: External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.
CVSS: MEDIUM (6.2) EPSS Score: 0.07%
April 8th, 2025 (14 days ago)
|
CVE-2025-29808 |
Description: Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
CVSS: MEDIUM (5.5) EPSS Score: 0.02%
April 8th, 2025 (14 days ago)
|
CVE-2025-27742 |
Description: Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
CVSS: MEDIUM (5.5) EPSS Score: 0.05%
April 8th, 2025 (14 days ago)
|
CVE-2025-27738 |
Description: Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network.
CVSS: MEDIUM (6.5) EPSS Score: 0.09%
April 8th, 2025 (14 days ago)
|
CVE-2025-27736 |
Description: Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally.
CVSS: MEDIUM (5.5) EPSS Score: 0.04%
April 8th, 2025 (14 days ago)
|
CVE-2025-27735 |
Description: Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally.
CVSS: MEDIUM (6.0) EPSS Score: 0.03%
April 8th, 2025 (14 days ago)
|
CVE-2025-27474 |
Description: Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVSS: MEDIUM (6.5) EPSS Score: 0.17%
April 8th, 2025 (14 days ago)
|
CVE-2025-27472 |
Description: Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature over a network.
CVSS: MEDIUM (5.4) EPSS Score: 0.1%
April 8th, 2025 (14 days ago)
|