Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-59287: Windows Server Update Service (WSUS) Remote Code Execution Vulnerability

How could an attacker exploit this vulnerability?

A remote, unauthenticated attacker could send a crafted event that triggers unsafe object deserialization in a legacy serialization mechanism, resulting in remote code execution.

Microsoft Security Response Center
#vulnerability#windows#rce#auth#Windows Server Update Service#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-59273: Azure Event Grid System Elevation of Privilege Vulnerability