VDB

GCVE-110-NCSC-2025-277

GCVE-110-NCSC-2025-277
Advisory PublishedCVSS 7.0/10
Vulnetix · Advisory published September 9, 2025
Microsoft heeft kwetsbaarheden verholpen in Windows.

Weaknesses (CWE)

CWE-923Improper Restriction of Communication Channel to Intended EndpointsCWE-121Stack-based Buffer OverflowCWE-416Use After FreeCWE-190Integer Overflow or WraparoundCWE-122Heap-based Buffer OverflowCWE-362Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')CWE-287Improper AuthenticationCWE-367Time-of-check Time-of-use (TOCTOU) Race ConditionCWE-908Use of Uninitialized ResourceCWE-1419Incorrect Initialization of ResourceCWE-822Untrusted Pointer DereferenceCWE-209Generation of Error Message Containing Sensitive InformationCWE-200Exposure of Sensitive Information to an Unauthorized ActorCWE-843Access of Resource Using Incompatible Type ('Type Confusion')CWE-41Improper Resolution of Path EquivalenceCWE-284Improper Access ControlCWE-693Protection Mechanism FailureCWE-126Buffer Over-readCWE-125Out-of-bounds ReadCWE-20Improper Input Validation

Risk Scores

CVSS 3.1
7.0/10
High · CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
Microsoftvers:unknown/*

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

74,108 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›