7.8
CVE-2025-60710 - Host Process for Windows Tasks Elevation of Privilege Vulnerability
Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.
7.8
CVE-2025-60709 - Windows Common Log File System Driver Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
6.5
CVE-2025-60708 - Storvsp.sys Driver Denial of Service Vulnerability
Untrusted pointer dereference in Storvsp.sys Driver allows an authorized attacker to deny service locally.
7.8
CVE-2025-60707 - Multimedia Class Scheduler Service (MMCSS) Driver Elevation of Privilege Vulnerability
Use after free in Multimedia Class Scheduler Service (MMCSS) allows an authorized attacker to elevate privileges locally.
5.5
CVE-2025-60706 - Windows Hyper-V Information Disclosure Vulnerability
Out-of-bounds read in Windows Hyper-V allows an authorized attacker to disclose information locally.
7.8
CVE-2025-60705 - Windows Client-Side Caching Elevation of Privilege Vulnerability
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.
7.5
CVE-2025-60704 - Windows Kerberos Elevation of Privilege Vulnerability
Missing cryptographic step in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network.
7.8
CVE-2025-60703 - Windows Remote Desktop Services Elevation of Privilege Vulnerability
Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
5.5
CVE-2025-59513 - Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability
Out-of-bounds read in Windows Bluetooth RFCOM Protocol Driver allows an authorized attacker to disclose information locally.
7.8
CVE-2025-59512 - Customer Experience Improvement Program (CEIP) Elevation of Privilege Vulnerability
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privileges locally.