CVE-2025-26686 Windows TCP/IP Remote Code Execution Vulnerability
Published April 8, 2025
Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
Published April 8, 2025
Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
Published April 8, 2025
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Published April 8, 2025
Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
Published April 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
Published April 8, 2025
Insufficiently protected credentials in Azure Local Cluster allows an authorized attacker to disclose information locally.
Published April 8, 2025
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Improper access control in Microsoft Office allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
Published April 8, 2025
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.