Vulnerabilities > Microsoft > Windows Server 2022 23H2 > 10.0.25398.1128

DATE CVE VULNERABILITY TITLE RISK
2025-05-13 CVE-2025-29842 Acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in Microsoft products
Acceptance of extraneous untrusted data with trusted data in UrlMon allows an unauthorized attacker to bypass a security feature over a network.
network
high complexity
microsoft CWE-349
7.5
2025-05-13 CVE-2025-29954 Resource Exhaustion vulnerability in Microsoft products
Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network.
network
high complexity
microsoft CWE-400
5.9
2025-05-13 CVE-2025-29955 Improper Input Validation vulnerability in Microsoft products
Improper input validation in Windows Hyper-V allows an unauthorized attacker to deny service locally.
local
low complexity
microsoft CWE-20
5.5
2025-05-13 CVE-2025-29956 Buffer Over-read vulnerability in Microsoft products
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network.
network
high complexity
microsoft CWE-126
5.4
2025-05-13 CVE-2025-29957 Resource Exhaustion vulnerability in Microsoft products
Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally.
local
low complexity
microsoft CWE-400
6.2
2025-05-13 CVE-2025-29958 Use of Uninitialized Resource vulnerability in Microsoft products
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-908
6.5
2025-05-13 CVE-2025-29959 Use of Uninitialized Resource vulnerability in Microsoft products
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-908
6.5
2025-05-13 CVE-2025-29960 Out-of-bounds Read vulnerability in Microsoft products
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-125
6.5
2025-05-13 CVE-2025-29961 Out-of-bounds Read vulnerability in Microsoft products
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
network
low complexity
microsoft CWE-125
6.5
2025-05-13 CVE-2025-29962 Heap-based Buffer Overflow vulnerability in Microsoft products
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
network
low complexity
microsoft CWE-122
8.8