CVE-2025-27748 Microsoft Office Remote Code Execution Vulnerability
Published April 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to deny service over a network.
Published April 8, 2025
Incorrect default permissions in Microsoft AutoUpdate (MAU) allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Heap-based buffer overflow in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
Published April 8, 2025
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
Published April 8, 2025
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
Published April 3, 2025
Improper neutralization of input during web page generation (‘cross-site scripting’) in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.