CVE-2026-49795
- EPSS 1.9%
- Veröffentlicht 14.07.2026 17:05:56
- Zuletzt bearbeitet 22.07.2026 16:17:32
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-49796
- EPSS 0.39%
- Veröffentlicht 14.07.2026 17:05:56
- Zuletzt bearbeitet 22.07.2026 16:17:32
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
CVE-2026-49794
- EPSS 0.35%
- Veröffentlicht 14.07.2026 17:05:55
- Zuletzt bearbeitet 22.07.2026 16:17:32
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
CVE-2026-49789
- EPSS 0.28%
- Veröffentlicht 14.07.2026 17:05:52
- Zuletzt bearbeitet 22.07.2026 16:17:31
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-49787
- EPSS 0.82%
- Veröffentlicht 14.07.2026 17:05:51
- Zuletzt bearbeitet 22.07.2026 16:17:30
Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:05:50
- Zuletzt bearbeitet 22.07.2026 16:17:29
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.
CVE-2026-49783
- EPSS 0.26%
- Veröffentlicht 14.07.2026 17:05:50
- Zuletzt bearbeitet 22.07.2026 16:17:30
Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
CVE-2026-49181
- EPSS 0.79%
- Veröffentlicht 14.07.2026 17:05:49
- Zuletzt bearbeitet 29.07.2026 20:17:03
Integer underflow (wrap or wraparound) in Windows DHCP Client allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-49180
- EPSS 0.33%
- Veröffentlicht 14.07.2026 17:05:48
- Zuletzt bearbeitet 22.07.2026 16:17:29
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
CVE-2026-49178
- EPSS 0.62%
- Veröffentlicht 14.07.2026 17:05:47
- Zuletzt bearbeitet 22.07.2026 16:17:29
Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.