CVE-2026-68833
- EPSS 0.31%
- Veröffentlicht 08.09.2026 17:10:48
- Zuletzt bearbeitet 24.09.2026 23:17:21
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack.
- EPSS 0.19%
- Veröffentlicht 08.09.2026 17:10:47
- Zuletzt bearbeitet 17.09.2026 18:31:50
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.
CVE-2026-62801
- EPSS 0.54%
- Veröffentlicht 08.09.2026 17:10:39
- Zuletzt bearbeitet 24.09.2026 23:17:15
Improper limitation of a pathname to a restricted directory ('path traversal') in Windows PowerShell allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-69782
- EPSS 0.56%
- Veröffentlicht 08.09.2026 17:10:33
- Zuletzt bearbeitet 24.09.2026 23:18:26
Concurrent execution using shared resource with improper synchronization ('race condition') in DNS Server allows an unauthorized attacker to execute code over a network.
CVE-2026-70091
- EPSS 0.67%
- Veröffentlicht 08.09.2026 17:10:32
- Zuletzt bearbeitet 24.09.2026 23:18:37
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to deny service over a network.
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:10:26
- Zuletzt bearbeitet 24.09.2026 23:17:14
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
- EPSS 0.2%
- Veröffentlicht 19.08.2026 20:58:27
- Zuletzt bearbeitet 08.09.2026 21:18:36
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-71331
- EPSS 0.45%
- Veröffentlicht 11.08.2026 17:07:15
- Zuletzt bearbeitet 20.08.2026 15:18:36
Integer overflow or wraparound in Windows Device Health Attestation (DHA) allows an unauthorized attacker to execute code over a network.
CVE-2026-66802
- EPSS 0.35%
- Veröffentlicht 11.08.2026 17:07:00
- Zuletzt bearbeitet 20.08.2026 15:18:19
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Device Health Attestation (DHA) allows an unauthorized attacker to execute code over a network.
CVE-2026-65796
- EPSS 0.51%
- Veröffentlicht 11.08.2026 17:06:59
- Zuletzt bearbeitet 16.08.2026 19:17:20
Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.