Aggregator
CVE-2025-21290 | Microsoft Windows up to Server 2025 Message Queuing resource consumption
1 year 3 months ago
A vulnerability classified as critical has been found in Microsoft Windows. This affects an unknown part of the component Message Queuing. The manipulation leads to resource consumption.
This vulnerability is uniquely identified as CVE-2025-21290. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21292 | Microsoft Windows up to Server 2025 Search Service code injection
1 year 3 months ago
A vulnerability, which was classified as critical, has been found in Microsoft Windows. This issue affects some unknown processing of the component Search Service. The manipulation leads to code injection.
The identification of this vulnerability is CVE-2025-21292. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21293 | Microsoft Windows up to Server 2025 Active Directory Domain Services access control
1 year 3 months ago
A vulnerability, which was classified as critical, was found in Microsoft Windows. Affected is an unknown function of the component Active Directory Domain Services. The manipulation leads to improper access controls.
This vulnerability is traded as CVE-2025-21293. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21294 | Microsoft Windows up to Server 2025 Digest Authentication sensitive data storage in improperly locked memory
1 year 3 months ago
A vulnerability has been found in Microsoft Windows and classified as critical. Affected by this vulnerability is an unknown functionality of the component Digest Authentication. The manipulation leads to sensitive data storage in improperly locked memory.
This vulnerability is known as CVE-2025-21294. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21295 | Microsoft Windows up to Server 2025 SPNEGO Extended Negotiation use after free
1 year 3 months ago
A vulnerability was found in Microsoft Windows and classified as critical. Affected by this issue is some unknown functionality of the component SPNEGO Extended Negotiation. The manipulation leads to use after free.
This vulnerability is handled as CVE-2025-21295. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21296 | Microsoft Windows up to Server 2025 BranchCache use after free
1 year 3 months ago
A vulnerability was found in Microsoft Windows. It has been classified as critical. This affects an unknown part of the component BranchCache. The manipulation leads to use after free.
This vulnerability is uniquely identified as CVE-2025-21296. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21297 | Microsoft Windows Server 2008 R2 SP1 up to Server 2022 23H2 Remote Desktop Services use after free
1 year 3 months ago
A vulnerability was found in Microsoft Windows. It has been declared as critical. This vulnerability affects unknown code of the component Remote Desktop Services. The manipulation leads to use after free.
This vulnerability was named CVE-2025-21297. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21298 | Microsoft Windows up to Server 2025 OLE use after free
1 year 3 months ago
A vulnerability was found in Microsoft Windows. It has been rated as very critical. This issue affects some unknown processing of the component OLE. The manipulation leads to use after free.
The identification of this vulnerability is CVE-2025-21298. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21299 | Microsoft Windows up to Server 2025 Kerberos sensitive information
1 year 3 months ago
A vulnerability classified as problematic has been found in Microsoft Windows. Affected is an unknown function of the component Kerberos. The manipulation leads to insecure storage of sensitive information.
This vulnerability is traded as CVE-2025-21299. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21301 | Microsoft Windows up to Server 2025 Geolocation Service access control
1 year 3 months ago
A vulnerability, which was classified as problematic, has been found in Microsoft Windows. Affected by this issue is some unknown functionality of the component Geolocation Service. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2025-21301. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21285 | Microsoft Windows up to Server 2025 Message Queuing null pointer dereference
1 year 3 months ago
A vulnerability has been found in Microsoft Windows and classified as critical. This vulnerability affects unknown code of the component Message Queuing. The manipulation leads to null pointer dereference.
This vulnerability was named CVE-2025-21285. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21288 | Microsoft Windows up to Server 2025 COM Server uninitialized resource
1 year 3 months ago
A vulnerability was found in Microsoft Windows. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component COM Server. The manipulation leads to uninitialized resource.
This vulnerability is known as CVE-2025-21288. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21289 | Microsoft Windows up to Server 2025 Message Queuing resource consumption
1 year 3 months ago
A vulnerability was found in Microsoft Windows. It has been rated as critical. Affected by this issue is some unknown functionality of the component Message Queuing. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2025-21289. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21249 | Microsoft Windows up to Server 2025 Digital Media out-of-bounds
1 year 3 months ago
A vulnerability, which was classified as critical, was found in Microsoft Windows. Affected is an unknown function of the component Digital Media. The manipulation leads to out-of-bounds read.
This vulnerability is traded as CVE-2025-21249. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2025-21251 | Microsoft Windows up to Server 2025 Message Queuing resource consumption
1 year 3 months ago
A vulnerability was found in Microsoft Windows and classified as critical. Affected by this issue is some unknown functionality of the component Message Queuing. The manipulation leads to resource consumption.
This vulnerability is handled as CVE-2025-21251. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
Re @INVUJerry @mrpxssy I said mop, not mob
1 year 3 months ago
Re What do you mean? To use the credentials in that dump, you only need a VPN service and that service needs to be publicly accessible. Or do you mean...
1 year 3 months ago
Digital ForensicsQuestions
1 year 3 months ago
Hey All, I have worked in eDiscovery for 10+ years but recently got laid off. I hav
Re @itsolelehmann OpenAI launched its new ‘Operators’ service exclusively in the US. Its unavailability in Europe is not (yet) due to the AI Act. ht...
1 year 3 months ago