Vulnerability index

Browse CVEs

773 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Heap-based Buffer OverflowCWE-122 × clear
HIGH 7.8 CVE-2025-53723 Numeric truncation error in Windows Hyper-V allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21100 / 10.0.14393.8330+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-53155 Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21100 / 10.0.14393.8330+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-53149 Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21100 / 10.0.14393.8330+ Fix from $1,9502025-08-12 HIGH 8.8 CVE-2025-53131 Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network. Windows 10 1809 10.0.17763.7678 / 10.0.19044.6216+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-50176 Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally. Windows 11 22h2 10.0.20348.3989 / 10.0.22621.5768+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-50168 Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 11 22h2 10.0.22621.5768 / 10.0.22631.5768+ Fix from $1,9502025-08-12 HIGH 8.8 CVE-2025-50163 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8330 / 10.0.17763.7678+ Fix from $1,9502025-08-12 HIGH 8.0 CVE-2025-50160 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8330 / 10.0.17763.7678+ Fix from $1,9502025-08-12 HIGH 8.0 CVE-2025-50162 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8330 / 10.0.17763.7678+ Fix from $1,9502025-08-12 HIGH 8.0 CVE-2025-50164 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8330 / 10.0.17763.7678+ Fix from $1,9502025-08-12 HIGH 7.3 CVE-2025-50161 Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21100 / 10.0.14393.8330+ Fix from $1,9502025-08-12 HIGH 7.8 CVE-2025-50155 Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local… Windows 10 1507 10.0.10240.21100 / 10.0.14393.8330+ Fix from $1,9502025-08-12 HIGH 8.8 CVE-2025-49757 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-08-12 HIGH 8.8 CVE-2025-49753 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49742 Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to execute code locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.0 CVE-2025-49744 Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49729 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49730 Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49732 Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.0 CVE-2025-49727 Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 8.5 CVE-2025-49717 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. Sql Server 2019 15.0.2135.5 / 15.0.4435.7+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49721 Heap-based buffer overflow in Windows Fast FAT Driver allows an unauthorized attacker to elevate privileges locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49705 Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-07-08 HIGH 8.4 CVE-2025-49697 Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20027+ Fix from $1,9502025-07-08 HIGH 8.4 CVE-2025-49696 Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-07-08 HIGH 8.0 CVE-2025-49691 Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over an adjacent network. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 7.8 CVE-2025-49683 Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to execute code locally. Windows 10 1507 10.0.10240.21073 / 10.0.14393.8246+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49676 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49672 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08 HIGH 8.8 CVE-2025-49673 Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network. Windows Server 2008 10.0.14393.8246 / 10.0.17763.7558+ Fix from $1,9502025-07-08