SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

31 results for “kev-cve-2021-25489” · 1.63 s · cached

Facets · 1 entity types

31 CVE
CVE-2026-45491CVE

CVE-2026-45491

Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.

CVSS 6.2EPSS 0.4%microsoft
Match for kev-cve-2021-25489
CVE-2026-45839CVE

CVE-2026-45839

In the Linux kernel, the following vulnerability has been resolved: bpf: reject negative CO-RE accessor indices in bpf_core_parse_spec() CO-RE accessor strings are colon-separated indices that desc…

CVSS 7.8EPSS 0.2%linux
Match for kev-cve-2021-25489
CVE-2026-47288CVE

CVE-2026-47288

Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network.

CVSS 7.1EPSS 0.4%microsoft
Match for kev-cve-2021-25489
CVE-2026-45497CVE

CVE-2026-45497

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.

CVSS 7.7EPSS 0.6%microsoft
Match for kev-cve-2021-25489
CVE-2026-45653CVE

CVE-2026-45653

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVSS 7.0EPSS 0.3%microsoft
Match for kev-cve-2021-25489
CVE-2026-45592CVE

CVE-2026-45592

Integer overflow or wraparound in Windows Internet (wininet.dll) allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for kev-cve-2021-25489
CVE-2026-35433CVE

CVE-2026-35433

Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.

CVSS 7.3EPSS 0.6%microsoft
Match for kev-cve-2021-25489
CVE-2025-4423CVE

CVE-2025-4423

The vulnerability was identified in the code developed specifically for Lenovo. Please visit "Lenovo Product Security Advisories and Announcements" webpage for more information about the vulnerabilit…

CVSS 8.2EPSS 0.2%
Match for kev-cve-2021-25489
CVE-2026-45593CVE

CVE-2026-45593

Use after free in Windows SDK allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.3%microsoft
Match for kev-cve-2021-25489
CVE-2026-45641CVE

CVE-2026-45641

Access of resource using incompatible type ('type confusion') in Windows Hyper-V allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.3%microsoft
Match for kev-cve-2021-25489
CVE-2026-45461CVE

CVE-2026-45461

Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

CVSS 8.4EPSS 0.4%microsoft
Match for kev-cve-2021-25489
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.