CVE-2025-24074 Microsoft DWM Core Library Elevation of Privilege Vulnerability
Published April 8, 2025
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to deny service over a network.
Published April 8, 2025
Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Improper link resolution before file access (‘link following’) in Windows Installer allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally.
Published April 8, 2025
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.