Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Microsoft Patches Over 100 Vulnerabilities

Posted on August 13, 2025August 13, 2025 By CWS

Microsoft’s August 2025 Patch Tuesday updates handle greater than 100 vulnerabilities throughout the tech large’s merchandise.

Not one of the safety holes patched this month seem to have been exploited within the wild. One vulnerability, a Home windows privilege escalation tracked as CVE-2025-53779, has been flagged as publicly disclosed.

A dozen vulnerabilities have been assigned a ‘vital severity’ score. Most of them are literally ‘excessive severity’ primarily based on their CVSS rating, aside from CVE-2025-53766, a distant code execution flaw in Home windows’ GDI+ part that has a CVSS rating of 9.8.

In line with Development Micro’s Zero Day Initiative (ZDI), which has summarized the patches, CVE-2025-53766 will be exploited by getting the focused person to go to a malicious web site or to open a malicious doc.

“A worst-case state of affairs could be an attacker importing one thing via an advert community that’s served as much as customers. Advert blockers are simply to take away annoyances; in addition they shield in opposition to malicious advertisements,” ZDI’s Dustin Childs defined. “They’re uncommon, however they’ve occurred prior to now. Since GDI+ touches so many various parts (and customers are inclined to click on on something), check and deploy this one shortly.”

One other vulnerability that’s ‘vital’ primarily based on its CVSS rating is CVE-2025-50165, which impacts Home windows’ graphics part and which additionally permits distant code execution. Exploitation requires the person to view a specifically crafted picture. Microsoft has assigned the problem an ‘essential’ severity score.

Different vulnerabilities permitting distant code execution are CVE-2025-53740 and CVE-2025-53731, which influence Workplace and will be exploited via the Preview Pane.

One other flaw value highlighting is CVE-2025-49712, a distant code execution bug affecting SharePoint. ZDI famous that it’s just like a vulnerability exploited just lately as a part of the ToolShell exploit chain. Commercial. Scroll to proceed studying.

The checklist of vulnerabilities flagged as ‘vital’ by Microsoft additionally contains a number of Hyper-V points (data disclosure, spoofing, and distant code execution), and an Azure Stack Hub data disclosure bug.

Microsoft’s exploitability evaluation for all of those points is ‘exploitation much less doubtless’ or ‘exploitation unlikely’, which signifies that the tech large doesn’t anticipate them to be exploited within the wild.

Adobe has additionally launched its Patch Tuesday updates, addressing almost 70 CVEs throughout over a dozen merchandise.

Associated: Microsoft Presents $5 Million at Zero Day Quest Hacking Contest

Associated: Organizations Warned of Vulnerability in Microsoft Alternate Hybrid Deployment

Associated: Microsoft Paid Out $17 Million in Bug Bounties in Previous Yr

Security Week News Tags:Microsoft, Patches, Vulnerabilities

Post navigation

Previous Post: How to Secure Your Gaming Accounts
Next Post: Adobe Patches Over 60 Vulnerabilities Across 13 Products

Related Posts

In Other News: Hackers Not Behind Blackout, CISO Docuseries, Dior Data Breach Security Week News
Top 25 MCP Vulnerabilities Reveal How AI Agents Can Be Exploited Security Week News
CISA Warns of Flaw in TeleMessage App Used by Ex-National Security Advisor  Security Week News
Sweet Security Raises $75 Million for Cloud and AI Security Security Week News
In Other News: India-Pakistan Cyberattacks, Radware Vulnerabilities, xAI Leak Security Week News
Russian APT Hits Ukrainian Government With New Malware via Signal Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Hackers Leveraging WhatsApp That Silently Harvest Logs and Contact Details
  • Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
  • PoC released for W3 Total Cache Vulnerability that Exposes 1+ Million Websites to RCE Attacks
  • CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
  • 800+ npm Packages and Thousands of GitHub Repos Compromised

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Hackers Leveraging WhatsApp That Silently Harvest Logs and Contact Details
  • Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
  • PoC released for W3 Total Cache Vulnerability that Exposes 1+ Million Websites to RCE Attacks
  • CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
  • 800+ npm Packages and Thousands of GitHub Repos Compromised

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2025 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark