Lista CVE - 2025 / Gennaio
Visualizzazione 1901 - 2000 di 4277 CVE per Gennaio 2025 (Pagina 20 di 43)
ID CVE | Data | Titolo |
---|---|---|
CVE-2025-21256 | 2025-01-14 | Windows Digital Media Elevation of Privilege Vulnerability |
CVE-2025-21261 | 2025-01-14 | Windows Digital Media Elevation of Privilege Vulnerability |
CVE-2025-21189 | 2025-01-14 | MapUrlToZone Security Feature Bypass Vulnerability |
CVE-2025-21273 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21274 | 2025-01-14 | Windows Event Tracing Denial of Service Vulnerability |
CVE-2025-21275 | 2025-01-14 | Windows App Package Installer Elevation of Privilege Vulnerability |
CVE-2025-21276 | 2025-01-14 | Windows MapUrlToZone Denial of Service Vulnerability |
CVE-2025-21286 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21287 | 2025-01-14 | Windows Installer Elevation of Privilege Vulnerability |
CVE-2025-21292 | 2025-01-14 | Windows Search Service Elevation of Privilege Vulnerability |
CVE-2025-21300 | 2025-01-14 | Windows upnphost.dll Denial of Service Vulnerability |
CVE-2025-21305 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21307 | 2025-01-14 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability |
CVE-2025-21308 | 2025-01-14 | Windows Themes Spoofing Vulnerability |
CVE-2025-21310 | 2025-01-14 | Windows Digital Media Elevation of Privilege Vulnerability |
CVE-2025-21312 | 2025-01-14 | Windows Smart Card Reader Information Disclosure Vulnerability |
CVE-2025-21317 | 2025-01-14 | Windows Kernel Memory Information Disclosure Vulnerability |
CVE-2025-21323 | 2025-01-14 | Windows Kernel Memory Information Disclosure Vulnerability |
CVE-2025-21172 | 2025-01-14 | .NET and Visual Studio Remote Code Execution Vulnerability |
CVE-2025-21324 | 2025-01-14 | Windows Digital Media Elevation of Privilege Vulnerability |
CVE-2025-21331 | 2025-01-14 | Windows Installer Elevation of Privilege Vulnerability |
CVE-2025-21336 | 2025-01-14 | Windows Cryptographic Information Disclosure Vulnerability |
CVE-2025-21338 | 2025-01-14 | GDI+ Remote Code Execution Vulnerability |
CVE-2025-21339 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21340 | 2025-01-14 | Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
CVE-2025-21343 | 2025-01-14 | Windows Web Threat Defense User Service Information Disclosure Vulnerability |
CVE-2025-21360 | 2025-01-14 | Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability |
CVE-2025-21361 | 2025-01-14 | Microsoft Outlook Remote Code Execution Vulnerability |
CVE-2025-21370 | 2025-01-14 | Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability |
CVE-2025-21372 | 2025-01-14 | Microsoft Brokering File System Elevation of Privilege Vulnerability |
CVE-2025-21374 | 2025-01-14 | Windows CSC Service Information Disclosure Vulnerability |
CVE-2025-21378 | 2025-01-14 | Windows CSC Service Elevation of Privilege Vulnerability |
CVE-2025-21402 | 2025-01-14 | Microsoft Office OneNote Remote Code Execution Vulnerability |
CVE-2025-21218 | 2025-01-14 | Windows Kerberos Denial of Service Vulnerability |
CVE-2025-21313 | 2025-01-14 | Windows Security Account Manager (SAM) Denial of Service Vulnerability |
CVE-2025-21332 | 2025-01-14 | MapUrlToZone Security Feature Bypass Vulnerability |
CVE-2025-21326 | 2025-01-14 | Internet Explorer Remote Code Execution Vulnerability |
CVE-2025-21311 | 2025-01-14 | Windows NTLM V1 Elevation of Privilege Vulnerability |
CVE-2025-21333 | 2025-01-14 | Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
CVE-2025-21334 | 2025-01-14 | Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability |
CVE-2025-21246 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21417 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21250 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21240 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21238 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21223 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21409 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2025-21245 | 2025-01-14 | Windows Telephony Service Remote Code Execution Vulnerability |
CVE-2024-50338 | 2025-01-14 | Carriage-return character in remote URL allows malicious repository to leak credentials in Git Credential Manager |
CVE-2025-23072 | 2025-01-14 | XSS in Special:RefreshSpecial |
CVE-2024-52006 | 2025-01-14 | Newline confusion in credential helpers can lead to credential exfiltration in git |
CVE-2024-50349 | 2025-01-14 | Git does not sanitize URLs when asking for credentials interactively |
CVE-2025-23073 | 2025-01-14 | API list=globalblocks can reveal IP of autoblock if username and IP are included in the bgtargets parameter |
CVE-2025-23042 | 2025-01-14 | Gradio Blocked Path ACL Bypass Vulnerability |
CVE-2025-0474 | 2025-01-14 | Invoice Ninja PDF Rendering Server Side Request Forgery |
CVE-2025-21127 | 2025-01-14 | Photoshop Desktop | Uncontrolled Search Path Element (CWE-427) |
CVE-2025-21122 | 2025-01-14 | Photoshop Desktop | Integer Underflow (Wrap or Wraparound) (CWE-191) |
CVE-2024-48854 | 2025-01-14 | Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform |
CVE-2025-23041 | 2025-01-14 | Short and Long Answer Fields Are Not Validated Server-Side For Maximum Length in Umbraco.Forms |
CVE-2025-23074 | 2025-01-14 | Special:EditProfile exposes the contents of profile fields marked "hidden"/friends or "friends of friends" when the privileged user isn't a friend of the user whose profile they edit(ed) |
CVE-2025-21128 | 2025-01-14 | Substance3D - Stager | Stack-based Buffer Overflow (CWE-121) |
CVE-2025-21131 | 2025-01-14 | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
CVE-2025-21130 | 2025-01-14 | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
CVE-2025-21132 | 2025-01-14 | Substance3D - Stager | Out-of-bounds Write (CWE-787) |
CVE-2025-21129 | 2025-01-14 | Substance3D - Stager | Heap-based Buffer Overflow (CWE-122) |
CVE-2024-48855 | 2025-01-14 | Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform |
CVE-2024-49375 | 2025-01-14 | Remote Code Execution via Remote Model Loading in Rasa |
CVE-2024-48856 | 2025-01-14 | Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform |
CVE-2025-21133 | 2025-01-14 | Illustrator on iPad | Integer Underflow (Wrap or Wraparound) (CWE-191) |
CVE-2025-21134 | 2025-01-14 | Illustrator on iPad | Integer Underflow (Wrap or Wraparound) (CWE-191) |
CVE-2024-48857 | 2025-01-14 | Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform |
CVE-2024-48858 | 2025-01-14 | Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform |
CVE-2025-21135 | 2025-01-14 | Animate | Integer Underflow (Wrap or Wraparound) (CWE-191) |
CVE-2024-55891 | 2025-01-14 | Information Disclosure via Exception Handling/Logger in TYPO3 |
CVE-2024-55945 | 2025-01-14 | Cross-Site Request Forgery in DB Check Module in TYPO3 |
CVE-2025-21137 | 2025-01-14 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
CVE-2025-21139 | 2025-01-14 | Substance3D - Designer | Heap-based Buffer Overflow (CWE-122) |
CVE-2025-21138 | 2025-01-14 | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
CVE-2025-21136 | 2025-01-14 | Substance3D - Designer | Out-of-bounds Write (CWE-787) |
CVE-2024-55924 | 2025-01-14 | Cross-Site Request Forgery in Scheduler Module in TYPO3 |
CVE-2024-55923 | 2025-01-14 | Cross-Site Request Forgery in Indexed Search Module in TYPO3 |
CVE-2024-55922 | 2025-01-14 | Cross-Site Request Forgery in Form Framework Module in TYPO3 |
CVE-2024-53263 | 2025-01-14 | Git LFS permits exfiltration of credentials via crafted HTTP URLs |
CVE-2024-55921 | 2025-01-14 | Cross-Site Request Forgery in Extension Manager Module in TYPO3 |
CVE-2024-55920 | 2025-01-14 | Cross-Site Request Forgery in Dashboard Module in TYPO3 |
CVE-2024-55894 | 2025-01-14 | TYPO3 Cross-Site Request Forgery in Backend User Module |
CVE-2024-55893 | 2025-01-14 | TYPO3 Cross-Site Request Forgery in Log Module |
CVE-2024-55892 | 2025-01-14 | Potential Open Redirect via Parsing Differences in TYPO3 |
CVE-2024-10253 | 2025-01-14 | A potential TOCTOU vulnerability was reported in PC Manager, Lenovo... |
CVE-2024-10254 | 2025-01-14 | A potential buffer overflow vulnerability was reported in PC Manager,... |
CVE-2024-45102 | 2025-01-14 | A privilege escalation vulnerability was discovered that could allow a... |
CVE-2024-54142 | 2025-01-14 | Cross-site Scripting via Discourse-ai SharedAiConversation onebox in Discourse |
CVE-2024-47605 | 2025-01-14 | Cross-site Scripting via insert media remote file oembed in silverstripe-asset-admin |
CVE-2024-53277 | 2025-01-14 | Cross-site Scripting in form messages in silverstripe framework |
CVE-2024-41453 | 2025-01-15 | A cross-site scripting (XSS) vulnerability in Process Maker pm4core-docker 4.1.21-RC7... |
CVE-2024-57023 | 2025-01-15 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command... |
CVE-2024-57024 | 2025-01-15 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command... |
CVE-2024-57025 | 2025-01-15 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command... |
CVE-2025-23061 | 2025-01-15 | Mongoose before 8.9.5 can improperly use a nested $where filter... |
CVE-2024-36751 | 2025-01-15 | An issue in parse-uri v1.0.9 allows attackers to cause a... |