Security
Headlines
HeadlinesLatestCVEs

Tag

#Security Vulnerability

CVE-2025-59510: Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability

Improper input validation in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service locally.

Microsoft Security Response Center
#vulnerability#windows#dos#auth#Windows Routing and Remote Access Service (RRAS)#Security Vulnerability
CVE-2025-59509: Windows Speech Recognition Information Disclosure Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows Speech allows an authorized attacker to disclose information locally.

CVE-2025-59511: Windows WLAN Service Elevation of Privilege Vulnerability

External control of file name or path in Windows WLAN Service allows an authorized attacker to elevate privileges locally.

CVE-2025-60705: Windows Client-Side Caching Elevation of Privilege Vulnerability

**What privileges could be gained by an attacker who successfully exploited the vulnerability?** An attacker who successfully exploited this vulnerability could gain administrator privileges.

CVE-2025-60728: Microsoft Excel Information Disclosure Vulnerability

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.