Home » breach » Page 4
UK map with incident markers showing four nationally significant cyber attacks weekly

How CVE-2025-59282 Enables Remote Code Execution in IIS

In October 2025, Microsoft rolled out updates for a remote code execution vulnerability in IIS, catalogued as CVE-2025-59282. This flaw affects the handling of Inbox COM objects, where critical memory operations do not include sufficient synchronization. Attackers can exploit this by triggering a race condition combined with a use-after-free scenario. Though Microsoft rates it as…

Read More