Recent Updates

List of recently analyzed vulnerabilities

Below is a list of vulnerabilities we have recently analyzed.

CVE
Release Date
Title
Impact
Severity
CWE
PoC
CVE-2025-27490
Apr 8, 2025
Windows Bluetooth Service Elevation of Privilege Vulnerability
LPE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2025-26666
Apr 8, 2025
Windows Media Remote Code Execution Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2025-26674
Apr 8, 2025
Windows Media Remote Code Execution Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2025-27742
Apr 8, 2025
NTFS Information Disclosure Vulnerability
Info Leak
Important
CWE-125: Out-of-bounds Read
CVE-2025-21180
Mar 11, 2025
Windows exFAT File System Remote Code Execution Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2025-24993
Mar 11, 2025
Windows NTFS Remote Code Execution Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2025-24985
Mar 11, 2025
Windows Fast FAT File System Driver Remote Code Execution Vulnerability
RCE
Important
CWE-190: Integer Overflow or Wraparound
CVE-2024-49128
Dec 27, 2024
Windows Remote Desktop Service RCE Vulnerability
RCE
Critical
CWE-416: Use After Free
CVE-2024-49112
Dec 27, 2024
Windows Lightweight Directory Access Protocol (LDAP) RCE Vulnerability
RCE
Critical
CWE-190: Integer Overflow or Wraparound
CVE-2024-43626
Nov 13, 2024
Windows Telephony Service EoP vulnerability
LPE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-43592
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-43453
Oct 8, 2024
Windows Routing and Remote Access Service (RRAS) RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-43454
Sep 10, 2024
Windows Remote Desktop Licensing Service RCE Vulnerability
RCE
Important
CWE-23: Relative Path Traversal
CVE-2024-38045
Sep 10, 2024
Windows TCP/IP RCE Vulnerability
RCE
Critical
CWE-122: Heap-based Buffer Overflow
CVE-2024-38063
Aug 13, 2024
Windows TCP/IP RCE Vulnerability
RCE
Critical
CWE-191: Integer Underflow
CVE-2024-38077
Jul 9, 2024
Windows Remote Desktop Licensing Service RCE Vulnerability
RCE
Critical
CWE-122: Heap-based Buffer Overflow
CVE-2024-38076
Jul 9, 2024
Windows Remote Desktop Licensing Service RCE Vulnerability
RCE
Critical
CWE-122: Heap-based Buffer Overflow
CVE-2024-38074
Jul 9, 2024
Windows Remote Desktop Licensing Service RCE Vulnerability
RCE
Critical
CWE-191: Integer Underflow
CVE-2024-38021
Jul 9, 2024
Microsoft Outlook RCE Vulnerability
RCE
Important
CWE-20: Improper Input Validation
CVE-2024-38060
Jul 9, 2024
Windows Imaging Component RCE Vulnerability
RCE
Critical
CWE-122: Heap-based Buffer Overflow
CVE-2024-30080
Jun 11, 2024
Microsoft Message Queuing (MSMQ) RCE Vulnerability
RCE
Critical
CWE-416: Use After Free
CVE-2024-30078
Jun 11, 2024
Windows Wi-Fi Driver RCE Vulnerability
RCE
Important
CWE-20: Improper Input Validation
CVE-2024-30077
Jun 11, 2024
Windows OLE RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-29050
Apr 9, 2024
Windows Cryptographic Services RCE Vulnerability
RCE
Important
CWE-197: Numeric Truncation Error
CVE-2024-26257
Apr 9, 2024
Microsoft Excel RCE Vulnerability
RCE
Important
CWE-415: Double Free
CVE-2024-20678
Apr 9, 2024
Remote Procedure Call Runtime RCE Vulnerability
RCE
Important
CWE-843: Type Confusion
CVE-2024-21435
Mar 12, 2024
Windows OLE RCE Vulnerability
RCE
Important
CWE-426: Untrusted Search Path
CVE-2024-21430
Mar 12, 2024
Windows USB Attached SCSI (UAS) Protocol RCE Vulnerability
RCE
Important
CWE-125: Out-of-bounds Read
CVE-2024-21407
Mar 12, 2024
Windows Hyper-V RCE Vulnerability
RCE
Critical
CWE-416: Use After Free
CVE-2024-21413
Feb 13, 2024
Microsoft Outlook RCE Vulnerability
RCE
Critical
CWE-20: Improper Input Validation
CVE-2024-21379
Feb 13, 2024
Microsoft Word RCE Vulnerability
RCE
Important
CWE-190: Integer Overflow
CVE-2024-21378
Feb 13, 2024
Microsoft Outlook RCE Vulnerability
RCE
Important
CWE-94: Code Injection
CVE-2024-21372
Feb 13, 2024
Windows OLE RCE Vulnerability
RCE
Important
CWE-190: Integer Overflow
CVE-2024-21368
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21366
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21365
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21363
Feb 13, 2024
Microsoft Message Queuing (MSMQ) RCE Vulnerability
RCE
Important
CWE-843: Type Confusion
CVE-2024-21361
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21360
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21359
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21358
Feb 13, 2024
Microsoft WDAC OLE DB provider for SQL Server RCE Vulnerability
RCE
Important
CWE-122: Heap-based Buffer Overflow
CVE-2024-21357
Feb 13, 2024
Windows Pragmatic General Multicast (PGM) RCE Vulnerability
RCE
Critical
CWE-843: Type Confusion
CVE-2024-21307
Jan 9, 2024
Remote Desktop Client RCE Vulnerability
RCE
Important
CWE-416: Use After Free
CVE-2024-20682
Jan 9, 2024
Windows Cryptographic Services RCE Vulnerability
RCE
Important
CWE-822: Untrusted Pointer Dereference
CVE-2024-20700
Jan 9, 2024
Windows Hyper-V RCE Vulnerability
RCE
Critical
CWE-362: Race Condition