Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0 ~ 10.0.17763.8027 | - | |
| Microsoft | Windows 10 Version 21H2 | 10.0.19044.0 ~ 10.0.19044.6575 | - | |
| Microsoft | Windows 10 Version 22H2 | 10.0.19045.0 ~ 10.0.19045.6575 | - | |
| Microsoft | Windows 11 version 22H3 | 10.0.22631.0 ~ 10.0.22631.6199 | - | |
| Microsoft | Windows 11 Version 23H2 | 10.0.22631.0 ~ 10.0.22631.6199 | - | |
| Microsoft | Windows 11 Version 24H2 | 10.0.26100.0 ~ 10.0.26100.7171 | - | |
| Microsoft | Windows 11 Version 25H2 | 10.0.26200.0 ~ 10.0.26200.7171 | - | |
| Microsoft | Windows Server 2019 | 10.0.17763.0 ~ 10.0.17763.8027 | - | |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 ~ 10.0.17763.8027 | - | |
| Microsoft | Windows Server 2022 | 10.0.20348.0 ~ 10.0.20348.4405 | - | |
| Microsoft | Windows Server 2022, 23H2 Edition (Server Core installation) | 10.0.25398.0 ~ 10.0.25398.1965 | - | |
| Microsoft | Windows Server 2025 | 10.0.26100.0 ~ 10.0.26100.7171 | - | |
| Microsoft | Windows Server 2025 (Server Core installation) | 10.0.26100.0 ~ 10.0.26100.7171 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2025-62215 is an Elevation of Privilege (EoP) vulnerability in the Windows Kernel, disclosed in November 2025 and confirmed to be actively exploited as a zero-day. | https://github.com/dexterm300/CVE-2025-62215-exploit-poc | POC Details |
| 2 | Hands‑on analysis of CVE‑2025‑62215, a Windows Kernel race condition exploited in the wild. Demonstrates privilege escalation to SYSTEM, detection scripts, and patch validation strategies for enterprise defenders and red teamers. | https://github.com/mrk336/Kernel-Chaos-Weaponizing-CVE-2025-62215-for-SYSTEM-Privilege-Escalation | POC Details |
| 3 | This PoC demonstrates a race condition in the Windows kernel leading to a double-free vulnerability, allowing local privilege escalation to SYSTEM. The exploit uses multithreaded handle manipulation and heap spraying to trigger the flaw under controlled conditions. | https://github.com/abrewer251/CVE-2025-62215_Windows_Kernel_PE | POC Details |
| 4 | CVE-2025-62215: Windows Kernel Race Condition + Double-Free EoP | https://github.com/theman001/CVE-2025-62215 | POC Details |
| 5 | CVE-2025-62215 exploit development using Claude Code Agent Team | https://github.com/uky007/CVE-2025-62215_analysis | POC Details |
No public POC found.
Login to generate AI POC| CVE-2025-60724 | 9.8 CRITICAL | GDI+ Remote Code Execution Vulnerability |
| CVE-2025-62220 | 8.8 HIGH | Windows Subsystem for Linux GUI Remote Code Execution Vulnerability |
| CVE-2025-59499 | 8.8 HIGH | Microsoft SQL Server Elevation of Privilege Vulnerability |
| CVE-2025-62222 | 8.8 HIGH | Agentic AI and Visual Studio Code Remote Code Execution Vulnerability |
| CVE-2025-62210 | 8.7 HIGH | Dynamics 365 Field Service (online) Spoofing Vulnerability |
| CVE-2025-62211 | 8.7 HIGH | Dynamics 365 Field Service (online) Spoofing Vulnerability |
| CVE-2025-30398 | 8.1 HIGH | Nuance PowerScribe 360 Information Disclosure Vulnerability |
| CVE-2025-62452 | 8.0 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-62204 | 8.0 HIGH | Microsoft SharePoint Remote Code Execution Vulnerability |
| CVE-2025-60715 | 8.0 HIGH | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2025-59511 | 7.8 HIGH | Windows WLAN Service Elevation of Privilege Vulnerability |
| CVE-2025-60727 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-62216 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-60721 | 7.8 HIGH | Windows Administrator Protection Elevation of Privilege Vulnerability |
| CVE-2025-62199 | 7.8 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-60713 | 7.8 HIGH | Windows Routing and Remote Access Service (RRAS) Elevation of Privilege Vulnerability |
| CVE-2025-60714 | 7.8 HIGH | Windows OLE Remote Code Execution Vulnerability |
| CVE-2025-60710 | 7.8 HIGH | Host Process for Windows Tasks Elevation of Privilege Vulnerability |
| CVE-2025-60718 | 7.8 HIGH | Windows Administrator Protection Elevation of Privilege Vulnerability |
| CVE-2025-59514 | 7.8 HIGH | Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability |
Showing top 20 of 63 CVEs. View all on vendor page → →
No comments yet