Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In May 2025
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.025
Published
2025-05-13
Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service over a network.
CVSS Score
6.5
EPSS Score
0.051
Published
2025-05-13
Time-of-check time-of-use (toctou) race condition in Windows Fundamentals allows an authorized attacker to execute code over a network.
CVSS Score
7.5
EPSS Score
0.003
Published
2025-05-13
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.007
Published
2025-05-13
Out-of-bounds read in Web Threat Defense (WTD.sys) allows an unauthorized attacker to deny service over a network.
CVSS Score
7.5
EPSS Score
0.079
Published
2025-05-13
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVSS Score
6.5
EPSS Score
0.046
Published
2025-05-13
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVSS Score
6.5
EPSS Score
0.023
Published
2025-05-13
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVSS Score
6.5
EPSS Score
0.023
Published
2025-05-13
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.016
Published
2025-05-13
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.015
Published
2025-05-13


Contact Us

Shodan ® - All rights reserved