CVE Vulnerabilities for "product:windows_11_25h2"
Showing 1-10 of 92 CVEs (filtered from 316,443 total)
Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.
Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an unauthorized attacker to disclose information with a physical attack.
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.
Time-of-check time-of-use (toctou) race condition in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Improper access control in Microsoft Windows Search Component allows an authorized attacker to deny service locally.
| Description | Year | ||||
|---|---|---|---|---|---|
| 8.8HIGH | 0.1%Minimal | - | 2025 | ||
| 2.1LOW | 0.1%Minimal | - | 2025 | ||
| 3.3LOW | 0.0%Minimal | - | 2025 | ||
| 7.0HIGH | 0.1%Minimal | - | 2025 | ||
| 7.0HIGH | 0.0%Minimal | - | 2025 | ||
| 6.5MEDIUM | 0.2%Minimal | - | 2025 | ||
| 6.5MEDIUM | 0.2%Minimal | - | 2025 | ||
| 7.8HIGH | 0.0%Minimal | - | 2025 | ||
| 7.8HIGH | 0.0%Minimal | - | 2025 | ||
| 5.5MEDIUM | 0.0%Minimal | - | 2025 |