CVE-2025-21205 Windows Telephony Service Remote Code Execution Vulnerability

Posted on Tuesday April 08, 2025

Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.

 

CVE-2025-21191 Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability

Posted on Tuesday April 08, 2025

Time-of-check time-of-use (toctou) race condition in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.

 

CVE-2025-21197 Windows NTFS Information Disclosure Vulnerability

Posted on Tuesday April 08, 2025

Improper access control in Windows NTFS allows an authorized attacker to disclose file path information under a folder where the attacker doesn't have permission to list content.

 

CVE-2025-21174 Windows Standards-Based Storage Management Service Denial of Service Vulnerability

Posted on Tuesday April 08, 2025

Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.

 

CVE-2025-24073 Microsoft DWM Core Library Elevation of Privilege Vulnerability

Posted on Tuesday April 08, 2025

Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

 

CVE-2025-24074 Microsoft DWM Core Library Elevation of Privilege Vulnerability

Posted on Tuesday April 08, 2025

Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.

 

Page:   1...484950515253545556...525

Celebrating 35+ Years

Managed Internet Connections

Contact Us

Support Ends for Windows 10 22H2, Windows Server 2012 R2, Exchange 2013, Office 2016