Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-04-08 CVE-2025-21203 Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
CWE-126
6.5
2025-04-08 CVE-2025-24058 Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-20
7.8
2025-04-08 CVE-2025-24060 Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-20
7.8
2025-04-08 CVE-2025-24062 Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-20
7.8
2025-04-08 CVE-2025-24074 Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-20
7.8
2025-04-08 CVE-2025-25002 Insertion of sensitive information into log file in Azure Local Cluster allows an authorized attacker to disclose information over an adjacent network.
low complexity
CWE-532
6.8
2025-04-08 CVE-2025-26628 Insufficiently protected credentials in Azure Local Cluster allows an authorized attacker to disclose information locally.
local
low complexity
CWE-522
7.3
2025-04-08 CVE-2025-26635 Weak authentication in Windows Hello allows an authorized attacker to bypass a security feature over a network.
network
low complexity
6.5
2025-04-08 CVE-2025-26639 Integer overflow or wraparound in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.
local
low complexity
CWE-122
7.8
2025-04-08 CVE-2025-26640 Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
local
high complexity
CWE-416
7.0