Vulnerabilities > Microsoft > Windows 10 1607 > 10.0.14393.1737

DATE CVE VULNERABILITY TITLE RISK
2025-05-13 CVE-2025-29957 Resource Exhaustion vulnerability in Microsoft products
Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally.
local
low complexity
microsoft CWE-400
6.2
2025-05-13 CVE-2025-29958 Use of Uninitialized Resource vulnerability in Microsoft products
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-908
6.5
2025-05-13 CVE-2025-29959 Use of Uninitialized Resource vulnerability in Microsoft products
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-908
6.5
2025-05-13 CVE-2025-29960 Out-of-bounds Read vulnerability in Microsoft products
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-125
6.5
2025-05-13 CVE-2025-29961 Out-of-bounds Read vulnerability in Microsoft products
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-125
6.5
2025-05-13 CVE-2025-29962 Heap-based Buffer Overflow vulnerability in Microsoft products
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
network
low complexity
microsoft CWE-122
8.8
2025-05-13 CVE-2025-29966 Heap-based Buffer Overflow vulnerability in Microsoft products
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.
network
low complexity
microsoft CWE-122
8.8
2025-05-13 CVE-2025-29967 Heap-based Buffer Overflow vulnerability in Microsoft products
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
network
low complexity
microsoft CWE-122
8.8
2025-05-13 CVE-2025-29969 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Microsoft products
Time-of-check time-of-use (toctou) race condition in Windows Fundamentals allows an authorized attacker to execute code over a network.
network
high complexity
microsoft CWE-367
7.5
2025-05-13 CVE-2025-29974 Integer Underflow (Wrap or Wraparound) vulnerability in Microsoft products
Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an adjacent network.
low complexity
microsoft CWE-191
5.7