Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Microsoft
CVE-2025-59202 CVSS 7.0
2025-10-14 07:00 UTC · 2025-10-14 04:00 -03
Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Insertion of sensitive information into log file in Active Directory Federation Services allows an unauthorized attacker to disclose information locally.
Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing locally.