VYPR

Windows 10 1607

by Microsoft

CVEs (3,986)

  • CVE-2025-24052HigOct 14, 2025
    risk 0.51cvss 7.8epss 0.02

    Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax…

  • CVE-2025-55228HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to execute code locally.

  • CVE-2025-55224HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to execute code locally.

  • CVE-2025-54916HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.02

    Stack-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.

  • CVE-2025-54913HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54912HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54895HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54894HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Local Security Authority Subsystem Service Elevation of Privilege Vulnerability

  • CVE-2025-54111HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54102HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54098HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.03

    Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54092HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

  • CVE-2025-54091HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53801HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Untrusted pointer dereference in Windows DWM allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53800HigSep 9, 2025
    risk 0.51cvss 7.8epss 0.00

    No cwe for this issue in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

  • CVE-2025-55230HigAug 21, 2025
    risk 0.51cvss 7.8epss 0.00

    Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53789HigAug 12, 2025
    risk 0.51cvss 7.8epss 0.00

    Missing authentication for critical function in Windows StateRepository API allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53726HigAug 12, 2025
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53725HigAug 12, 2025
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

  • CVE-2025-53724HigAug 12, 2025
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

Page 56 of 200