Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
40,677 matching · page 423/814Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2025-25003(opens NVD record) | High | 7.3 | Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24998(opens NVD record) | High | 7.3 | Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24997(opens NVD record) | Medium | 4.4 | Null pointer dereference in Windows Kernel Memory allows an authorized attacker to deny service locally. | Mar 11, 2025 |
| CVE-2025-24996(opens NVD record) | Medium | 6.5 | External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network. | Mar 11, 2025 |
| CVE-2025-24995(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24994(opens NVD record) | High | 7.3 | Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24993(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24992(opens NVD record) | Medium | 5.5 | Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally. | Mar 11, 2025 |
| CVE-2025-24991(opens NVD record) | Medium | 5.5 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. | Mar 11, 2025 |
| CVE-2025-24988(opens NVD record) | Medium | 6.6 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attack. | Mar 11, 2025 |
| CVE-2025-24987(opens NVD record) | Medium | 6.6 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attack. | Mar 11, 2025 |
| CVE-2025-24986(opens NVD record) | Medium | 6.5 | Improper isolation or compartmentalization in Azure PromptFlow allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24985(opens NVD record) | High | 7.8 | Integer overflow or wraparound in Windows Fast FAT Driver allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24984(opens NVD record) | Medium | 4.6 | Insertion of sensitive information into log file in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack. | Mar 11, 2025 |
| CVE-2025-24983(opens NVD record) | High | 7.0 | Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24084(opens NVD record) | High | 8.4 | Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24083(opens NVD record) | High | 7.8 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24082(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24081(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24080(opens NVD record) | High | 7.8 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24079(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24078(opens NVD record) | High | 7.0 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24077(opens NVD record) | High | 7.8 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24076(opens NVD record) | High | 7.3 | Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24075(opens NVD record) | High | 7.8 | Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24072(opens NVD record) | High | 7.8 | Use after free in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24071(opens NVD record) | Medium | 6.5 | Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network. | Mar 11, 2025 |
| CVE-2025-24070(opens NVD record) | High | 7.0 | Weak authentication in ASP.NET Core & Visual Studio allows an unauthorized attacker to elevate privileges over a network. | Mar 11, 2025 |
| CVE-2025-24067(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24066(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24064(opens NVD record) | High | 8.1 | Use after free in DNS Server allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24061(opens NVD record) | High | 7.8 | Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature locally. | Mar 11, 2025 |
| CVE-2025-24059(opens NVD record) | High | 7.8 | Incorrect conversion between numeric types in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24057(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2025-24056(opens NVD record) | High | 8.8 | Heap-based buffer overflow in Windows Telephony Server allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24055(opens NVD record) | Medium | 4.3 | Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to disclose information with a physical attack. | Mar 11, 2025 |
| CVE-2025-24054(opens NVD record) | Medium | 6.5 | External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network. | Mar 11, 2025 |
| CVE-2025-24051(opens NVD record) | High | 8.8 | Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24050(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24049(opens NVD record) | High | 8.4 | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24048(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Role: Windows Hyper-V allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24046(opens NVD record) | High | 7.8 | Use after free in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24045(opens NVD record) | High | 8.1 | Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24044(opens NVD record) | High | 7.8 | Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-24043(opens NVD record) | High | 7.5 | Improper verification of cryptographic signature in .NET allows an authorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-24035(opens NVD record) | High | 8.1 | Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network. | Mar 11, 2025 |
| CVE-2025-21247(opens NVD record) | Medium | 4.3 | Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network. | Mar 11, 2025 |
| CVE-2025-21199(opens NVD record) | Medium | 6.7 | Improper privilege management in Azure Agent Installer allows an authorized attacker to elevate privileges locally. | Mar 11, 2025 |
| CVE-2025-21180(opens NVD record) | High | 7.8 | Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to execute code locally. | Mar 11, 2025 |
| CVE-2024-56338(opens NVD record) | Medium | 4.8 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. | Mar 11, 2025 |