Vulnerabilities
Vulnerable Software
Microsoft:  >> Windows 11 25h2  Security Vulnerabilities
Origin validation error in Windows Network Address Translation (NAT) allows an unauthorized attacker to perform spoofing over an adjacent network.
CVSS Score
8.3
EPSS Score
0.002
Published
2026-08-11
Allocation of resources without limits or throttling in Windows Kernel allows an unauthorized attacker to deny service over a network.
CVSS Score
7.5
EPSS Score
0.011
Published
2026-08-11
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.006
Published
2026-08-11
Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.008
Published
2026-08-11
Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.
CVSS Score
7.0
EPSS Score
0.002
Published
2026-08-11
Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.002
Published
2026-08-11
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
CVSS Score
7.0
EPSS Score
0.002
Published
2026-07-16
Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.009
Published
2026-07-14
Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.003
Published
2026-07-14
Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.
CVSS Score
6.5
EPSS Score
0.005
Published
2026-07-14


Contact Us

Shodan ® - All rights reserved