7
CVE-2025-55340 - Windows Remote Desktop Protocol Security Feature Bypass
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.
7.8
CVE-2025-55339 - Windows Network Driver Interface Specification (NDIS) Driver Elevation of Privilege Vulnerability
Out-of-bounds read in Windows NDIS allows an authorized attacker to elevate privileges locally.
6.1
CVE-2025-55338 - Windows BitLocker Security Feature Bypass Vulnerability
Missing Ability to Patch ROM Code in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
5.5
CVE-2025-55336 - Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
Exposure of sensitive information to an unauthorized actor in Windows Cloud Files Mini Filter Driver allows an authorized attacker to disclose information locally.
7.4
CVE-2025-55335 - Windows NTFS Elevation of Privilege Vulnerability
Use after free in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
6.1
CVE-2025-55333 - Windows BitLocker Security Feature Bypass Vulnerability
Incomplete comparison with missing factors in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
5.5
CVE-2025-55325 - Windows Storage Management Provider Information Disclosure Vulnerability
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
6.8
CVE-2025-55320 - Configuration Manager Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over an adjacent network.
7.8
CVE-2025-24052 - Windows Agere Modem Driver Elevation of Privilege Vulnerability
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax modem hardware dependeβ¦
7.8
CVE-2025-24990 - Windows Agere Modem Driver Elevation of Privilege Vulnerability
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax modem hardware dependeβ¦