Windows 11 24h2
by Microsoft
CVEs (1,908)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-48808 | Med | 0.36 | 5.5 | 0.00 | Jul 8, 2025 | Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally. | ||
| CVE-2025-26636 | Med | 0.36 | 5.5 | 0.00 | Jul 8, 2025 | Processor optimization removal or modification of security-critical code in Windows Kernel allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33065 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33063 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33062 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33061 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33060 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33059 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33058 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33055 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-33052 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally. | ||
| CVE-2025-32722 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally. | ||
| CVE-2025-32720 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-32719 | Med | 0.36 | 5.5 | 0.00 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-24069 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-24068 | Med | 0.36 | 5.5 | 0.00 | Jun 10, 2025 | Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-24065 | Med | 0.36 | 5.5 | 0.01 | Jun 10, 2025 | Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally. | ||
| CVE-2025-29837 | Med | 0.36 | 5.5 | 0.01 | May 13, 2025 | Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally. | ||
| CVE-2025-29829 | Med | 0.36 | 5.5 | 0.01 | May 13, 2025 | Use of uninitialized resource in Windows Trusted Runtime Interface Driver allows an authorized attacker to disclose information locally. | ||
| CVE-2025-27742 | Med | 0.36 | 5.5 | 0.01 | Apr 8, 2025 | Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally. |
- risk 0.36cvss 5.5epss 0.00
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.00
Processor optimization removal or modification of security-critical code in Windows Kernel allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.00
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.00
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Use of uninitialized resource in Windows Trusted Runtime Interface Driver allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
Page 72 of 96