Vulnerabilities
Vulnerable Software
Microsoft:  >> Windows 11 24h2  Security Vulnerabilities
CVE-2025-59230
Known exploited
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.015
Published
2025-10-14
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
CVSS Score
6.5
EPSS Score
0.001
Published
2025-10-14
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-10-14
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
CVSS Score
7.4
EPSS Score
0.001
Published
2025-10-14
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-10-14
Insertion of sensitive information into log file in Windows StateRepository API allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-10-14
Use of uninitialized resource in Windows Management Services allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-10-14
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
CVSS Score
7.0
EPSS Score
0.0
Published
2025-10-14
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
CVSS Score
7.4
EPSS Score
0.001
Published
2025-10-14
Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-10-14


Contact Us

Shodan ® - All rights reserved