CVE-2025-26685 Microsoft Defender for Identity Spoofing Vulnerability
Published May 13, 2025
Improper authentication in Microsoft Defender for Identity allows an unauthorized attacker to perform spoofing over an adjacent network.
Published May 13, 2025
Improper authentication in Microsoft Defender for Identity allows an unauthorized attacker to perform spoofing over an adjacent network.
Published May 13, 2025
Access of resource using incompatible type (‘type confusion’) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Published May 13, 2025
Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service over a network.
Published May 13, 2025
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Published May 13, 2025
Improper input validation in Windows Hyper-V allows an unauthorized attacker to deny service locally.
Published May 13, 2025
Use of hard-coded credentials in Windows Hardware Lab Kit allows an authorized attacker to elevate privileges locally.
Published May 13, 2025
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.
Published May 13, 2025
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
Published May 13, 2025
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
Published May 13, 2025
Uncontrolled resource consumption in Windows LDAP – Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.