Vulnerabilities
Vulnerable Software
Microsoft:  >> Windows Server 2025  Security Vulnerabilities
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.011
Published
2025-06-10
CVE-2025-33073
Known exploited
Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.
CVSS Score
8.8
EPSS Score
0.492
Published
2025-06-10
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.
CVSS Score
8.1
EPSS Score
0.013
Published
2025-06-10
Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
8.1
EPSS Score
0.008
Published
2025-06-10
Improper verification of cryptographic signature in App Control for Business (WDAC) allows an unauthorized attacker to bypass a security feature locally.
CVSS Score
5.1
EPSS Score
0.006
Published
2025-06-10
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
CVSS Score
7.5
EPSS Score
0.424
Published
2025-06-10
Improper privilege management in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
CVSS Score
8.4
EPSS Score
0.008
Published
2025-06-10
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.013
Published
2025-06-10
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.007
Published
2025-06-10
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.019
Published
2025-06-10


Contact Us

Shodan ® - All rights reserved