7.5

CVE-2026-50508

Medienbericht

Windows NTLM Spoofing Vulnerability

Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftWindows 10 1607 HwPlatformx64 Version < 10.0.14393.9234
MicrosoftWindows 10 1607 HwPlatformx86 Version < 10.0.14393.9234
MicrosoftWindows 11 22h2 HwPlatformarm64 Version < 10.0.22631.7219
MicrosoftWindows 11 22h2 HwPlatformx64 Version < 10.0.22631.7219
MicrosoftWindows Server 2004 HwPlatformx64 Version < 10.0.19045.7417
MicrosoftWindows Server 2016 Version < 10.0.14393.9234
MicrosoftWindows Server 2022 Version < 10.0.20348.5256
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.68% 0.946
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Microsoft 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
VulnDex Intel
Media Report
10.06.2026 18:13
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
VulnDex Intel
Media Report
09.06.2026 20:12
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50508
Vendor Advisory