CVE-2025-58098 Apache HTTP Server: Server Side Includes adds query string to #exec cmd=…

Information published.


CVE-2025-62408 c-ares has a Use After Free vulnerability when connection is cleaned up after error

Information published.


CVE-2025-62557 Microsoft Office Remote Code Execution Vulnerability

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.


CVE-2025-62464 Windows Projected File System Elevation of Privilege Vulnerability

Buffer over-read in Windows Projected File System allows an authorized attacker to elevate privileges locally.


CVE-2025-59516 Windows Storage VSP Driver Elevation of Privilege Vulnerability

Missing authentication for critical function in Windows Storage VSP Driver allows an authorized attacker to elevate privileges locally.


CVE-2025-62455 Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

Improper input validation in Windows Message Queuing allows an authorized attacker to elevate privileges locally.


CVE-2025-62555 Microsoft Word Remote Code Execution Vulnerability

Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.


CVE-2025-62550 Azure Monitor Agent Remote Code Execution Vulnerability

Out-of-bounds write in Azure Monitor Agent allows an authorized attacker to execute code over a network.


CVE-2025-62456 Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code over a network.


CVE-2025-55233 Windows Projected File System Elevation of Privilege Vulnerability

Out-of-bounds read in Windows Projected File System allows an authorized attacker to elevate privileges locally.


This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

AbuseIPDB Contributor Badge