Security
Headlines
HeadlinesLatestCVEs

Tag

#vulnerability

CVE-2025-27731: Microsoft OpenSSH for Windows Elevation of Privilege Vulnerability

Improper input validation in Microsoft Management Console allows an authorized attacker to elevate privileges locally.

Microsoft Security Response Center
#vulnerability#windows#microsoft#auth#ssh#OpenSSH for Windows#Security Vulnerability
CVE-2025-27727: Windows Installer Elevation of Privilege Vulnerability

Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.

CVE-2025-27492: Windows Secure Channel Elevation of Privilege Vulnerability

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally.

CVE-2025-27489: Azure Local Elevation of Privilege Vulnerability

Improper input validation in Azure Local allows an authorized attacker to elevate privileges locally.