Security
Headlines
HeadlinesLatestCVEs

Tag

#vulnerability

CVE-2025-32717: Microsoft Word Remote Code Execution Vulnerability

**How could an attacker exploit this vulnerability?** An unauthenticated attacker could exploit this vulnerability by crafting a malicious RTF file. If a user opens the file or it is rendered in the preview pane, the attacker could execute arbitrary code in the user's context.

Microsoft Security Response Center
#vulnerability#microsoft#rce#auth#Microsoft Office Word#Security Vulnerability
CVE-2025-3052: Cert CC: CVE-2025-3052 InsydeH2O Secure Boot Bypass

**What kind of security feature could be bypassed by successfully exploiting this vulnerability?** An attacker who successfully exploited this vulnerability could bypass Secure Boot.

CVE-2025-32718: Windows SMB Client Elevation of Privilege Vulnerability

**What privileges could be gained by an attacker who successfully exploited this vulnerability?** An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.