CISA's list that day

11 March 2025

On CISA added 6 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Windows. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2025-26633Management Console (MMC) Improper NeutralizationMicrosoft WindowsPatch this weekRansomware use0.30
CVE-2025-24985Fast FAT File System Driver Integer OverflowMicrosoft WindowsPatch soon0.04
CVE-2025-24993NTFS Heap-Based Buffer OverflowMicrosoft WindowsPatch soon0.02
CVE-2025-24984NTFS Information DisclosureMicrosoft WindowsPatch soon0.02
CVE-2025-24991NTFS Out-Of-Bounds ReadMicrosoft WindowsPatch soon0.02
CVE-2025-24983Win32k Use-After-FreeMicrosoft WindowsPatch soon0.01