CVE-2026-49177
- EPSS 0.33%
- Veröffentlicht 14.07.2026 17:04:33
- Zuletzt bearbeitet 12.08.2026 18:17:30
Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.
CVE-2026-49172
- EPSS 0.67%
- Veröffentlicht 14.07.2026 17:04:31
- Zuletzt bearbeitet 23.07.2026 05:16:32
Heap-based buffer overflow in Windows FTP Service allows an unauthorized attacker to execute code over a network.
CVE-2026-49171
- EPSS 0.22%
- Veröffentlicht 14.07.2026 17:04:30
- Zuletzt bearbeitet 22.07.2026 16:17:27
Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.
CVE-2026-49176
- EPSS 0.47%
- Veröffentlicht 14.07.2026 17:04:30
- Zuletzt bearbeitet 22.07.2026 16:17:28
Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally.
CVE-2026-49168
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:04:28
- Zuletzt bearbeitet 22.07.2026 16:17:27
Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack.
CVE-2026-49164
- EPSS 0.65%
- Veröffentlicht 14.07.2026 17:04:26
- Zuletzt bearbeitet 22.07.2026 16:17:26
Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.
CVE-2026-49165
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:04:26
- Zuletzt bearbeitet 29.07.2026 20:17:03
Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclose information locally.
CVE-2026-42990
- EPSS 0.67%
- Veröffentlicht 14.07.2026 17:04:24
- Zuletzt bearbeitet 22.07.2026 16:17:22
Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.
CVE-2026-42975
- EPSS 0.34%
- Veröffentlicht 14.07.2026 17:04:21
- Zuletzt bearbeitet 23.07.2026 05:16:30
Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.
CVE-2026-42900
- EPSS 0.39%
- Veröffentlicht 14.07.2026 17:04:20
- Zuletzt bearbeitet 23.07.2026 05:16:30
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.