Vulnerabilities
Vulnerable Software
CVE-2025-30397
Known exploited
Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthorized attacker to execute code over a network.
CVSS Score
7.5
EPSS Score
0.231
Published
2025-05-13
CVE-2025-30400
Known exploited
Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.043
Published
2025-05-13
CVE-2025-32701
Known exploited
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.049
Published
2025-05-13
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-05-13
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-05-13
Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
CVSS Score
7.1
EPSS Score
0.003
Published
2025-04-08
Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.0
Published
2025-04-08
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.0
Published
2025-04-08
Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally.
CVSS Score
8.6
EPSS Score
0.001
Published
2025-04-08
Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network.
CVSS Score
6.5
EPSS Score
0.001
Published
2025-04-08


Contact Us

Shodan ® - All rights reserved