CVE-2026-50684
- EPSS 0.37%
- Veröffentlicht 14.07.2026 17:08:18
- Zuletzt bearbeitet 21.07.2026 19:55:23
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
CVE-2026-54115
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:17
- Zuletzt bearbeitet 21.07.2026 19:54:45
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.
CVE-2026-50673
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:08:15
- Zuletzt bearbeitet 16.07.2026 19:59:23
Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50668
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:03:36
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:26:44
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-50666
- EPSS 0.62%
- Veröffentlicht 14.07.2026 17:08:12
- Zuletzt bearbeitet 23.07.2026 05:16:36
Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges over a network.
- EPSS 2.01%
- Veröffentlicht 14.07.2026 17:08:12
- Zuletzt bearbeitet 22.07.2026 15:02:41
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-50661
- EPSS 0.72%
- Veröffentlicht 14.07.2026 17:08:11
- Zuletzt bearbeitet 22.07.2026 15:21:26
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
CVE-2026-50655
- EPSS 0.51%
- Veröffentlicht 14.07.2026 17:08:09
- Zuletzt bearbeitet 22.07.2026 15:16:24
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code locally.
CVE-2026-50647
- EPSS 1.07%
- Veröffentlicht 14.07.2026 17:08:06
- Zuletzt bearbeitet 24.07.2026 13:15:36
Loop with unreachable exit condition ('infinite loop') in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.