Total
82350 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2025-50176 | 2025-08-13 | N/A | 7.8 HIGH | ||
Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally. | |||||
CVE-2025-53133 | 2025-08-13 | N/A | 7.8 HIGH | ||
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally. | |||||
CVE-2025-20037 | 2025-08-13 | N/A | 7.2 HIGH | ||
Time-of-check time-of-use race condition in firmware for some Intel(R) Converged Security and Management Engine may allow a privileged user to potentially enable escalation of privilege via local access. | |||||
CVE-2025-22893 | 2025-08-13 | N/A | 7.8 HIGH | ||
Insufficient control flow management in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |||||
CVE-2025-53140 | 2025-08-13 | N/A | 7.0 HIGH | ||
Use after free in Kernel Transaction Manager allows an authorized attacker to elevate privileges locally. | |||||
CVE-2025-49707 | 2025-08-13 | N/A | 7.9 HIGH | ||
Improper access control in Azure Virtual Machines allows an authorized attacker to perform spoofing locally. | |||||
CVE-2025-22839 | 2025-08-13 | N/A | 7.5 HIGH | ||
Insufficient granularity of access control in the OOB-MSM for some Intel(R) Xeon(R) 6 Scalable processors may allow a privileged user to potentially enable escalation of privilege via adjacent access. | |||||
CVE-2025-53144 | 2025-08-13 | N/A | 8.8 HIGH | ||
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network. | |||||
CVE-2025-53132 | 2025-08-13 | N/A | 8.0 HIGH | ||
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges over a network. | |||||
CVE-2025-24486 | 2025-08-13 | N/A | 7.8 HIGH | ||
Improper input validation in the Linux kernel-mode driver for some Intel(R) 700 Series Ethernet before version 2.28.5 may allow an authenticated user to potentially enable escalation of privilege via local access. | |||||
CVE-2025-53142 | 2025-08-13 | N/A | 7.0 HIGH | ||
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. | |||||
CVE-2025-50168 | 2025-08-13 | N/A | 7.8 HIGH | ||
Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. | |||||
CVE-2025-33051 | 2025-08-13 | N/A | 7.5 HIGH | ||
Exposure of sensitive information to an unauthorized actor in Microsoft Exchange Server allows an unauthorized attacker to disclose information over a network. | |||||
CVE-2025-5456 | 2025-08-13 | N/A | 7.5 HIGH | ||
A buffer over-read vulnerability in Ivanti Connect Secure before 22.7R2.8 or 22.8R2, Ivanti Policy Secure before 22.7R1.5, Ivanti ZTA Gateway before 2.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote unauthenticated attacker to trigger a denial of service. CWE-125 | |||||
CVE-2025-20625 | 2025-08-13 | N/A | 7.4 HIGH | ||
Improper conditions check for some Intel(R) PROSet/Wireless WiFi Software for Windows before version 23.110.0.5 may allow an unauthenticated user to potentially enable denial of service via adjacent access. | |||||
CVE-2025-53152 | 2025-08-13 | N/A | 7.8 HIGH | ||
Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally. | |||||
CVE-2025-5462 | 2025-08-13 | N/A | 7.5 HIGH | ||
A heap-based buffer overflow in Ivanti Connect Secure before 22.7R2.8 or 22.8R2, Ivanti Policy Secure before 22.7R1.5, Ivanti ZTA Gateway before 22.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote unauthenticated attacker to trigger a denial of service. | |||||
CVE-2025-24303 | 2025-08-13 | N/A | 7.8 HIGH | ||
Improper check for unusual or exceptional conditions in the Linux kernel-mode driver for some Intel(R) 800 Series Ethernet before version 1.17.2 may allow an authenticated user to potentially enable escalation of privilege via local access. | |||||
CVE-2025-53147 | 2025-08-13 | N/A | 7.0 HIGH | ||
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. | |||||
CVE-2025-26403 | 2025-08-13 | N/A | 7.2 HIGH | ||
Out-of-bounds write in the memory subsystem for some Intel(R) Xeon(R) 6 processors when using Intel(R) SGX or Intel(R) TDX may allow a privileged user to potentially enable escalation of privilege via local access. |