Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
2 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
4933
Current result set after filter and search.
Exploited Flagged
4189
Rows with a non-empty exploitation signal.
Distinct CWE
162
Unique weakness classes in this view.
Modules
1528
Unique inferred driver or component labels.
Reset
Release Month
August 2025
17 CVE | last update 2 day(s) ago
Release 2025-08-12 Patch Tuesday Count 11
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-50164
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
CVE-2025-50163
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
CVE-2025-50162
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
CVE-2025-50160
Windows Routing and Remote Access Service (RRAS)
Exploitation Less Likely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
CVE-2025-49757
Windows Routing and Remote Access Service (RRAS)
Exploitation Unlikely
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous
CVE-2025-53131
Windows Media
Exploitation Less Likely
Windows Media Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Kai Lu of Palo Alto Networks
CVE-2025-53155
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Do Manh Dung & Nguyen Dang Nguyen of STAR Labs SG Pte. Ltd. (@starlabs_sg) working with Trend Zero Day Initiative
CVE-2025-50161
Win32k
Exploitation Less Likely
Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Arnaud Lubin
CVE-2025-53783
Microsoft Teams
Exploitation Less Likely
Microsoft Teams Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
Anonymous working with Trend Zero Day Initiative
CVE-2025-53149
Kernel Streaming WOW Thunk Service Driver
Exploitation Less Likely
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Reported By
CVE-2025-53766
GDI+
Exploitation Less Likely
GDI+ Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-08-12 No
Release 2025-08-11 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-4948
Libsoup: integer underflow in soup_multipart_new_from_message() leading to
No latest release note
Libsoup: integer underflow in soup_multipart_new_from_message() leading to denial of service in libsoup
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-08-11 - -
Release 2025-08-07 Other / OOB Count 3
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2023-26819
cJSON 1.7.15 might allow a
No latest release note
cJSON 1.7.15 might allow a denial of service via a crafted JSON document such as {"a": true, "b": [ null,9999999999999999999999999999999999999999999999912345678901234567]}.
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
2025-08-07 - -
CVE-2022-4743
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a
No latest release note
A potential memory leak issue was discovered in SDL2 in GLES_CreateTexture() function in SDL_render_gles.c. The vulnerability allows an attacker to cause a denial of service attack. The vulnerability affects SDL2 v2.0.4 and above. SDL-1.x are not affected.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-08-07 - -
CVE-2015-3310
Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater than 65535, allows remote attackers to cause a
No latest release note
Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater than 65535, allows remote attackers to cause a denial of service (crash) via a start accounting message to the RADIUS server.
No CVSS vector published
2025-08-07 - -
Release 2025-08-06 Other / OOB Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-5455
Possible
No latest release note
Possible denial of service when passing malformed data in a URL to qDecodeDataUrl
No CVSS vector published
2025-08-06 - -
CVE-2025-47268
ping in iputils before 20250602 allows a
No latest release note
ping in iputils before 20250602 allows a denial of service
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
2025-08-06 - -
Release Month
July 2025
33 CVE | last update 2 day(s) ago
Release 2025-07-29 Other / OOB Count 2
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-49794
Libxml: heap use after free (uaf) leads to
No latest release note
Libxml: heap use after free (uaf) leads to denial of service (dos)
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
2025-07-29 - -
CVE-2025-49796
Libxml: type confusion leads to
No latest release note
Libxml: type confusion leads to denial of service (dos)
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
2025-07-29 - -
Release 2025-07-17 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-49630
Apache HTTP Server: mod_proxy_http2
No latest release note
Apache HTTP Server: mod_proxy_http2 denial of service
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-07-17 - -
Release 2025-07-11 Other / OOB Count 10
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2024-25710
Apache Commons Compress
No latest release note
Apache Commons Compress: Denial of service caused by an infinite loop for a corrupted DUMP file
CVSS vector: AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
2025-07-11 - -
CVE-2024-24478
An issue in Wireshark before 4.2.0 allows a remote attacker to cause a
No latest release note
An issue in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the packet-bgp.c, dissect_bgp_open(tvbuff_t*tvb, proto_tree*tree, packet_info*pinfo), optlen components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-07-11 - -
CVE-2025-4476
Libsoup: null pointer dereference in libsoup may lead to
No latest release note
Libsoup: null pointer dereference in libsoup may lead to denial of service
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
2025-07-11 - -
CVE-2025-47279
undici
No latest release note
undici Denial of Service attack via bad certificate data
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
2025-07-11 - -
CVE-2023-50967
latchset jose through version 11 allows attackers to cause a
No latest release note
latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-07-11 - -
CVE-2025-47711
Nbdkit: nbdkit-server: off-by-one error when processing block status may lead to a
No latest release note
Nbdkit: nbdkit-server: off-by-one error when processing block status may lead to a denial of service
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
2025-07-11 - -
CVE-2025-47712
Nbd: nbdkit: integer overflow triggers an assertion resulting in
No latest release note
Nbd: nbdkit: integer overflow triggers an assertion resulting in denial of service
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
2025-07-11 - -
CVE-2024-24479
A Buffer Overflow in Wireshark before 4.2.0 allows a remote attacker to cause a
No latest release note
A Buffer Overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the wsutil/to_str.c, and format_fractional_part_nsecs components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-07-11 - -
CVE-2024-24476
A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a
No latest release note
A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2025-07-11 - -
CVE-2025-32907
Libsoup
No latest release note
Libsoup: denial of service in server when client requests a large amount of overlapping ranges with range header
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
2025-07-11 - -
Release 2025-07-08 Patch Tuesday Count 20
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2025-47178
Microsoft Configuration Manager
Exploitation Unlikely
Microsoft Configuration Manager Remote Code Execution Vulnerability
CVSS vector: AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-48815
Windows Simple Search and Discovery Protocol (SSDP) Service
Exploitation Less Likely
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-47985
Windows Event Tracing
Exploitation Less Likely
Windows Event Tracing Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-49661
Windows Ancillary Function Driver for WinSock
Exploitation Less Likely
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Fraunhofer FKIE CA&D
Anonymous
CVE-2025-47999
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Denial of Service Vulnerability
CVSS vector: AV:A/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-47159
Windows Virtualization-Based Security (VBS)
Exploitation Less Likely
Windows Virtualization-Based Security (VBS) Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Anonymous
CVE-2025-47984
Windows GDI
Exploitation Less Likely
Windows GDI Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-48799
Windows Update Service
Exploitation More Likely
Windows Update Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-49680
Windows Performance Recorder (WPR)
Exploitation Less Likely
Windows Performance Recorder (WPR) Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-48820
Windows AppX Deployment Service
Exploitation Less Likely
Windows AppX Deployment Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Simon Zuckerbraun of Trend Zero Day Initiative
CVE-2025-49738
Microsoft PC Manager
Exploitation Less Likely
Microsoft PC Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
CVE-2025-48819
Windows Universal Plug and Play (UPnP) Device Host
Exploitation Less Likely
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
CVSS vector: AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-49686
Windows TCP/IP Driver
Exploitation Less Likely
Windows TCP/IP Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Marat Gayanov with Positive Technologies
CVE-2025-49678
NTFS
Exploitation Unlikely
NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Bruno Botelho
CVE-2025-49694
Microsoft Brokering File System
Exploitation Less Likely
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
hazard
CVE-2025-48821
Windows Universal Plug and Play (UPnP) Device Host
Exploitation Less Likely
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability
CVSS vector: AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-47976
Windows Simple Search and Discovery Protocol (SSDP) Service
Exploitation Less Likely
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
CVE-2025-49685
Windows Search Service
Exploitation Less Likely
Windows Search Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Anonymous
CVE-2025-49726
Windows Notification
Exploitation Less Likely
Windows Notification Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
Zhiniang Peng with HUST & R4nger with CyberKunLun
CVE-2025-49725
Windows Notification
Exploitation Less Likely
Windows Notification Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2025-07-08 No
Reported By
R4nger with CyberKunLun & Zhiniang Peng with HUST
Prev Page 17 / 99 | rows 801-850 of 4933 Next