CVE-2025-24055 - Out-of-Bounds Read in Windows USB Video Driver Lets Attackers Disclose Information via Physical Access
---
Summary:
In early 2025, a new vulnerability called CVE-2025-24055 was discovered in the Windows USB Video Driver (usbvideo.sys). This flaw enables an
CVE-2025-24054 - Exploiting External Control of File Name or Path in Windows NTLM for Network Spoofing
In early 2025, security researchers identified a critical vulnerability affecting Windows systems that use NTLM authentication. This flaw, now tracked as CVE-2025-24054, allows
CVE-2025-24045 - Sensitive Data Storage in Improperly Locked Memory in Windows Remote Desktop Services Allows Remote Code Execution
In 2025, security researchers discovered CVE-2025-24045 – a serious vulnerability in Windows Remote Desktop Services (RDS). This flaw exposes sensitive data by storing it
CVE-2025-24043 - Exploiting Improper Signature Verification in .NET for Remote Code Execution
In early 2025, a serious security flaw was disclosed in the Microsoft .NET Framework and .NET Core. Tracked as CVE-2025-24043, this vulnerability enables
CVE-2025-27602 - How a Backoffice API Flaw Let Low-Privilege Umbraco Editors Access Restricted Content and Media
Umbraco is a wildly popular, open-source content management system (CMS) built on Microsoft’s .NET tech stack. Its easy-to-use “backoffice” panel helps
Episode
00:00:00
00:00:00