CVE-2026-71334
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:12:27
- Zuletzt bearbeitet 24.09.2026 23:18:43
Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attacker to elevate privileges locally.
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:12:26
- Zuletzt bearbeitet 24.09.2026 23:18:43
Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-71337
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:12:26
- Zuletzt bearbeitet 15.09.2026 13:08:44
Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally.
CVE-2026-71330
- EPSS 0.79%
- Veröffentlicht 08.09.2026 17:12:25
- Zuletzt bearbeitet 24.09.2026 23:18:42
Exposure of sensitive system information to an unauthorized control sphere in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to disclose information over a network.
CVE-2026-70587
- EPSS 0.79%
- Veröffentlicht 08.09.2026 17:12:24
- Zuletzt bearbeitet 24.09.2026 23:18:42
Improper null termination in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.
CVE-2026-71329
- EPSS 0.31%
- Veröffentlicht 08.09.2026 17:12:24
- Zuletzt bearbeitet 24.09.2026 23:18:42
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-70586
- EPSS 0.82%
- Veröffentlicht 08.09.2026 17:12:23
- Zuletzt bearbeitet 24.09.2026 23:18:42
Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over a network.
CVE-2026-70584
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:12:22
- Zuletzt bearbeitet 23.09.2026 13:54:40
Access of resource using incompatible type ('type confusion') in Windows Core Messaging allows an authorized attacker to elevate privileges locally.
CVE-2026-70564
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:12:21
- Zuletzt bearbeitet 24.09.2026 23:18:40
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
CVE-2026-70582
- EPSS 0.22%
- Veröffentlicht 08.09.2026 17:12:21
- Zuletzt bearbeitet 28.09.2026 20:20:35
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.