Microsoft Powershell 7.5 vulnerabilities

7 known vulnerabilities affecting microsoft/powershell_7.5.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH6

Vulnerabilities

Page 1 of 1
CVE-2025-25004HIGHCVSS 7.3≥ 7.5.0, < 7.5.42025-10-14
CVE-2025-25004 [HIGH] CWE-284 CVE-2025-25004: Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-49734HIGHCVSS 7.0≥ 7.5.0, < 7.5.32025-09-09
CVE-2025-49734 [HIGH] CWE-923 CVE-2025-49734: Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally.
cvelistv5nvd
CVE-2025-30399HIGHCVSS 7.5≥ 7.5.0, < 7.5.22025-06-13
CVE-2025-30399 [HIGH] CWE-426 CVE-2025-30399: Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.
cvelistv5nvd
CVE-2025-21171HIGHCVSS 7.5≥ 7.5.0, < 7.5.02025-01-14
CVE-2025-21171 [HIGH] CWE-122 .NET Remote Code Execution Vulnerability .NET Remote Code Execution Vulnerability .NET Remote Code Execution Vulnerability
cvelistv5
CVE-2024-43498CRITICALCVSS 9.8≥ 7.5.0, < 7.5.02024-11-12
CVE-2024-43498 [CRITICAL] CWE-843 CVE-2024-43498: .NET and Visual Studio Remote Code Execution Vulnerability .NET and Visual Studio Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-43499HIGHCVSS 7.5≥ 7.5.0, < 7.5.02024-11-12
CVE-2024-43499 [HIGH] CWE-409 CVE-2024-43499: .NET and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Denial of Service Vulnerability
cvelistv5nvd
CVE-2024-43485HIGHCVSS 7.5≥ 7.5.0, < 7.5.02024-10-08
CVE-2024-43485 [HIGH] CWE-407 CVE-2024-43485: .NET and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Denial of Service Vulnerability
cvelistv5nvd