CyberSecurity
on October 14, 2025 at 7:00 am — CVE-2025-47989 Azure Connected Machine Agent Elevation of Privilege Vulnerability
Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally.
on October 14, 2025 at 7:00 am — CVE-2025-48004 Microsoft Brokering File System Elevation of Privilege Vulnerability
Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.
on October 14, 2025 at 7:00 am — CVE-2025-50174 Windows Device Association Broker Service Elevation of Privilege Vulnerability
Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
on October 14, 2025 at 7:00 am — CVE-2025-53782 Microsoft Exchange Server Elevation of Privilege Vulnerability
Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally.