CVE-2025-26633 |
🚨 Marked as known exploited on March 31st, 2025 (20 days ago).
Description: Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.
CVSS: HIGH (7.0) EPSS Score: 1.47% SSVC Exploitation: active
March 11th, 2025 (about 1 month ago)
|
CVE-2025-26631 |
Description: Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.
CVSS: HIGH (7.3) EPSS Score: 0.12%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-26630 |
Description: Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally.
CVSS: HIGH (7.8) EPSS Score: 0.08%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-26629 |
Description: Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVSS: HIGH (7.8) EPSS Score: 0.08%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-26627 |
Description: Improper neutralization of special elements used in a command ('command injection') in Azure Arc allows an authorized attacker to elevate privileges locally.
CVSS: HIGH (7.0) EPSS Score: 0.04%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-25008 |
Description: Improper link resolution before file access ('link following') in Microsoft Windows allows an authorized attacker to elevate privileges locally.
CVSS: HIGH (7.1) EPSS Score: 0.06%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-25003 |
Description: Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.
CVSS: HIGH (7.3) EPSS Score: 0.12%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-24998 |
Description: Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.
CVSS: HIGH (7.3) EPSS Score: 0.12%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-24997 |
Description: Null pointer dereference in Windows Kernel Memory allows an authorized attacker to deny service locally.
CVSS: MEDIUM (4.4) EPSS Score: 0.06%
March 11th, 2025 (about 1 month ago)
|
CVE-2025-24996 |
Description: External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
CVSS: MEDIUM (6.5) EPSS Score: 0.12%
March 11th, 2025 (about 1 month ago)
|