Vulnerabilities
Vulnerable Software
Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.
CVSS Score
4.7
EPSS Score
0.0
Published
2025-10-14
Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
CVSS Score
7.8
EPSS Score
0.0
Published
2025-10-14
Heap-based buffer overflow in Windows DWM allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-10-14
Out-of-bounds read in Windows WLAN Auto Config Service allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.0
Published
2025-10-14
Improper input validation in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-10-14
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Resilient File System (ReFS) allows an unauthorized attacker to elevate privileges locally.
CVSS Score
7.4
EPSS Score
0.0
Published
2025-10-14
Improper input validation in Windows Kernel allows an unauthorized attacker to disclose information locally.
CVSS Score
5.1
EPSS Score
0.001
Published
2025-10-14
Time-of-check time-of-use (toctou) race condition in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.0
Published
2025-10-14
Out-of-bounds read in Windows DWM allows an authorized attacker to elevate privileges locally.
CVSS Score
7.0
EPSS Score
0.001
Published
2025-10-14
Missing Ability to Patch ROM Code in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
CVSS Score
6.1
EPSS Score
0.001
Published
2025-10-14


Contact Us

Shodan ® - All rights reserved