CVE List - 2025 / July
Showing 1001 - 1100 of 3776 CVEs for July 2025 (Page 11 of 38)
| CVE ID | Date | Title |
|---|---|---|
| CVE-2025-48816 | 2025-07-08 | HID Class Driver Elevation of Privilege Vulnerability |
| CVE-2025-48817 | 2025-07-08 | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2025-48818 | 2025-07-08 | BitLocker Security Feature Bypass Vulnerability |
| CVE-2025-48819 | 2025-07-08 | Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability |
| CVE-2025-48820 | 2025-07-08 | Windows AppX Deployment Service Elevation of Privilege Vulnerability |
| CVE-2025-48821 | 2025-07-08 | Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability |
| CVE-2025-48822 | 2025-07-08 | Windows Hyper-V Discrete Device Assignment (DDA) Remote Code Execution Vulnerability |
| CVE-2025-48823 | 2025-07-08 | Windows Cryptographic Services Information Disclosure Vulnerability |
| CVE-2025-49659 | 2025-07-08 | Windows Transport Driver Interface (TDI) Translation Driver Elevation of Privilege Vulnerability |
| CVE-2025-49660 | 2025-07-08 | Windows Event Tracing Elevation of Privilege Vulnerability |
| CVE-2025-49663 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-49664 | 2025-07-08 | Windows User-Mode Driver Framework Host Information Disclosure Vulnerability |
| CVE-2025-49665 | 2025-07-08 | Workspace Broker Elevation of Privilege Vulnerability |
| CVE-2025-49666 | 2025-07-08 | Windows Server Setup and Boot Event Collection Remote Code Execution Vulnerability |
| CVE-2025-49667 | 2025-07-08 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
| CVE-2025-49668 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-49669 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-49673 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-49675 | 2025-07-08 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability |
| CVE-2025-49678 | 2025-07-08 | NTFS Elevation of Privilege Vulnerability |
| CVE-2025-49679 | 2025-07-08 | Windows Shell Elevation of Privilege Vulnerability |
| CVE-2025-49680 | 2025-07-08 | Windows Performance Recorder (WPR) Denial of Service Vulnerability |
| CVE-2025-49681 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
| CVE-2025-49682 | 2025-07-08 | Windows Media Elevation of Privilege Vulnerability |
| CVE-2025-49683 | 2025-07-08 | Microsoft Virtual Hard Disk Remote Code Execution Vulnerability |
| CVE-2025-49684 | 2025-07-08 | Windows Storage Port Driver Information Disclosure Vulnerability |
| CVE-2025-49685 | 2025-07-08 | Windows Search Service Elevation of Privilege Vulnerability |
| CVE-2025-49693 | 2025-07-08 | Microsoft Brokering File System Elevation of Privilege Vulnerability |
| CVE-2025-49695 | 2025-07-08 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-49696 | 2025-07-08 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-49697 | 2025-07-08 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-49698 | 2025-07-08 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2025-49699 | 2025-07-08 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-49700 | 2025-07-08 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2025-49701 | 2025-07-08 | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2025-49702 | 2025-07-08 | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-49703 | 2025-07-08 | Microsoft Word Remote Code Execution Vulnerability |
| CVE-2025-49704 | 2025-07-08 | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2025-49705 | 2025-07-08 | Microsoft PowerPoint Remote Code Execution Vulnerability |
| CVE-2025-49706 | 2025-07-08 | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2025-49714 | 2025-07-08 | Visual Studio Code Python Extension Remote Code Execution Vulnerability |
| CVE-2025-49718 | 2025-07-08 | Microsoft SQL Server Information Disclosure Vulnerability |
| CVE-2025-49722 | 2025-07-08 | Windows Print Spooler Denial of Service Vulnerability |
| CVE-2025-49724 | 2025-07-08 | Windows Connected Devices Platform Service Remote Code Execution Vulnerability |
| CVE-2025-49725 | 2025-07-08 | Windows Notification Elevation of Privilege Vulnerability |
| CVE-2025-49727 | 2025-07-08 | Win32k Elevation of Privilege Vulnerability |
| CVE-2025-49729 | 2025-07-08 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-49730 | 2025-07-08 | Microsoft Windows QoS Scheduler Driver Elevation of Privilege Vulnerability |
| CVE-2025-49732 | 2025-07-08 | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2025-49733 | 2025-07-08 | Win32k Elevation of Privilege Vulnerability |
| CVE-2025-47999 | 2025-07-08 | Windows Hyper-V Denial of Service Vulnerability |
| CVE-2025-49737 | 2025-07-08 | Microsoft Teams Elevation of Privilege Vulnerability |
| CVE-2025-49738 | 2025-07-08 | Microsoft PC Manager Elevation of Privilege Vulnerability |
| CVE-2025-49739 | 2025-07-08 | Visual Studio Elevation of Privilege Vulnerability |
| CVE-2025-49740 | 2025-07-08 | Windows SmartScreen Security Feature Bypass Vulnerability |
| CVE-2025-49742 | 2025-07-08 | Windows Graphics Component Remote Code Execution Vulnerability |
| CVE-2025-49744 | 2025-07-08 | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2025-47988 | 2025-07-08 | Azure Monitor Agent Remote Code Execution Vulnerability |
| CVE-2024-36357 | 2025-07-08 | A transient execution vulnerability in some AMD processors may allow an attacker to infer data in the L1D cache, potentially resulting in the leakage of sensitive information across privileged boundaries. |
| CVE-2025-7187 | 2025-07-08 | code-projects Chat System fetch_member.php sql injection |
| CVE-2025-53479 | 2025-07-08 | CheckUser: Reflected Cross-Site Scripting (XSS) in Special:CheckUser via unsanitized internationalized message |
| CVE-2025-0928 | 2025-07-08 | Arbitrary executable upload via authenticated endpoint |
| CVE-2025-7362 | 2025-07-08 | MsUpload: Stored Cross-Site Scripting (XSS) via unsanitized msu-continue system message |
| CVE-2025-7363 | 2025-07-08 | TitleIcon: Stored Cross-Site Scripting (XSS) via #titleicon_unicode parser function |
| CVE-2025-47135 | 2025-07-08 | Dimension | Out-of-bounds Read (CWE-125) |
| CVE-2025-30312 | 2025-07-08 | Dimension | Out-of-bounds Write (CWE-787) |
| CVE-2025-7188 | 2025-07-08 | code-projects Chat System addmember.php sql injection |
| CVE-2025-4663 | 2025-07-08 | Denial-of-Service (DoS) after Unusual or Exceptional Conditions vulnerability |
| CVE-2025-7189 | 2025-07-08 | code-projects Chat System send_message.php sql injection |
| CVE-2025-48386 | 2025-07-08 | Git allows a buffer overflow in 'wincred' credential helper |
| CVE-2025-48385 | 2025-07-08 | Git alllows arbitrary file writes via bundle-uri parameter injection |
| CVE-2025-48384 | 2025-07-08 | Git allows arbitrary code execution through broken config quoting |
| CVE-2023-43039 | 2025-07-08 | IBM OpenPages with Watson cross-site scripting |
| CVE-2025-7190 | 2025-07-08 | code-projects Library Management System student_edit_photo.php unrestricted upload |
| CVE-2024-49784 | 2025-07-08 | IBM OpenPages with Watson information disclosure |
| CVE-2024-49783 | 2025-07-08 | IBM OpenPages with Watson information disclosure |
| CVE-2025-27367 | 2025-07-08 | IBM OpenPages with Watson improper input validation |
| CVE-2025-27369 | 2025-07-08 | IBM OpenPages with Watson information disclosure |
| CVE-2025-7191 | 2025-07-08 | code-projects Student Enrollment System login.php sql injection |
| CVE-2025-37102 | 2025-07-08 | Authenticated Command Injection Vulnerability In Instant On Command Line Interface |
| CVE-2025-37103 | 2025-07-08 | Hardcoded Credential Exposure Allows Unauthorized Access in Web Interface |
| CVE-2025-7192 | 2025-07-08 | D-Link DIR-645 ssdpcgi cgibin ssdpcgi_main command injection |
| CVE-2025-53355 | 2025-07-08 | mcp-server-kubernetes vulnerable to command injection in several tools |
| CVE-2025-7193 | 2025-07-08 | itsourcecode Agri-Trading Online Shopping System suppliercontroller.php sql injection |
| CVE-2025-7194 | 2025-07-08 | D-Link DI-500WF jhttpd ip_position.asp sprintf stack-based overflow |
| CVE-2025-49538 | 2025-07-08 | ColdFusion | XML Injection (aka Blind XPath Injection) (CWE-91) |
| CVE-2025-49540 | 2025-07-08 | ColdFusion | Cross-site Scripting (Stored XSS) (CWE-79) |
| CVE-2025-49543 | 2025-07-08 | ColdFusion | Cross-site Scripting (Stored XSS) (CWE-79) |
| CVE-2025-49544 | 2025-07-08 | ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611) |
| CVE-2025-49546 | 2025-07-08 | ColdFusion | Improper Access Control (CWE-284) |
| CVE-2025-49551 | 2025-07-08 | ColdFusion | Use of Hard-coded Credentials (CWE-798) |
| CVE-2025-49537 | 2025-07-08 | ColdFusion | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') (CWE-78) |
| CVE-2025-49541 | 2025-07-08 | ColdFusion | Cross-site Scripting (Stored XSS) (CWE-79) |
| CVE-2025-49545 | 2025-07-08 | ColdFusion | Server-Side Request Forgery (SSRF) (CWE-918) |
| CVE-2025-49539 | 2025-07-08 | ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611) |
| CVE-2025-49536 | 2025-07-08 | ColdFusion | Incorrect Authorization (CWE-863) |
| CVE-2025-49535 | 2025-07-08 | ColdFusion | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611) |
| CVE-2025-49542 | 2025-07-08 | ColdFusion | Cross-site Scripting (Reflected XSS) (CWE-79) |
| CVE-2025-7030 | 2025-07-08 | Two-factor Authentication (TFA) - Less critical - Access bypass - SA-CONTRIB-2025-085 |
| CVE-2025-7031 | 2025-07-08 | Config Pages Viewer - Critical - Access bypass - SA-CONTRIB-2025-086 |