Windows 10 1809 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: Windows 10 1809 - CVE listesi
PRODUCT 112 kayıt
High CVSS: 8.8

CVE-2025-49724

Use after free in Windows Connected Devices Platform Service allows an unauthorized attacker to execute code over a network.
High CVSS: 8.8

CVE-2025-49723

Missing authorization in Windows StateRepository API allows an authorized attacker to perform tampering locally.
High CVSS: 7.4

CVE-2025-49690

Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an unauthorized attacker to elevate privileges locally.
High CVSS: 7.0

CVE-2025-49685

Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
Medium CVSS: 6.8

CVE-2025-48003

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
Medium CVSS: 5.5

CVE-2025-33063

Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
Medium CVSS: 5.5

CVE-2025-33052

Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.
High KEV CVSS: 7.8

CVE-2025-30400

Use after free in Windows DWM allows an authorized attacker to elevate privileges locally.
High CVSS: 8.8

CVE-2025-29964

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
High CVSS: 8.8

CVE-2025-29963

Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
High CVSS: 7.8

CVE-2025-27739

Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-27731

Improper input validation in OpenSSH for Windows allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-27730

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-27476

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
High CVSS: 7.8

CVE-2025-27467

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.
High CVSS: 8.4

CVE-2025-26678

Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally.
High CVSS: 7.8

CVE-2025-26674

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
High CVSS: 7.8

CVE-2025-26666

Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
Medium CVSS: 5.1

CVE-2025-26644

Automated recognition mechanism with inadequate detection or handling of adversarial input perturbations in Windows Hello allows an unauthorized attacker to perform spoofing locally.
High CVSS: 7.0

CVE-2025-26640

Use after free in Windows Digital Media allows an authorized attacker to elevate privileges locally.