Microsoft

Windows 10 22h2

3069 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.29%
  • Veröffentlicht 08.09.2026 17:10:47
  • Zuletzt bearbeitet 24.09.2026 23:17:20

Improper link resolution before file access ('link following') in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.19%
  • Veröffentlicht 08.09.2026 17:10:40
  • Zuletzt bearbeitet 24.09.2026 23:17:10

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.54%
  • Veröffentlicht 08.09.2026 17:10:39
  • Zuletzt bearbeitet 24.09.2026 23:17:15

Improper limitation of a pathname to a restricted directory ('path traversal') in Windows PowerShell allows an unauthorized attacker to bypass a security feature over a network.

Medienbericht
  • EPSS 0.23%
  • Veröffentlicht 08.09.2026 17:10:37
  • Zuletzt bearbeitet 24.09.2026 23:19:20

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 08.09.2026 17:10:31
  • Zuletzt bearbeitet 24.09.2026 23:17:38

Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 08.09.2026 17:10:26
  • Zuletzt bearbeitet 24.09.2026 23:17:14

Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.56%
  • Veröffentlicht 08.09.2026 17:10:26
  • Zuletzt bearbeitet 24.09.2026 23:17:14

Out-of-bounds read in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network.

  • EPSS 0.2%
  • Veröffentlicht 19.08.2026 20:58:27
  • Zuletzt bearbeitet 08.09.2026 21:18:36

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 11.08.2026 17:07:16
  • Zuletzt bearbeitet 16.08.2026 19:16:58

Out-of-bounds read in Windows Management Instrumentation allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 11.08.2026 17:06:59
  • Zuletzt bearbeitet 17.08.2026 18:56:12

Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.