- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:04:35
- Zuletzt bearbeitet 23.07.2026 05:16:32
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.
CVE-2026-49177
- EPSS 0.33%
- Veröffentlicht 14.07.2026 17:04:33
- Zuletzt bearbeitet 12.08.2026 18:17:30
Out-of-bounds read in Windows TCP/IP allows an authorized attacker to disclose information locally.
CVE-2026-49174
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:04:32
- Zuletzt bearbeitet 22.07.2026 16:17:28
Missing authentication for critical function in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.
CVE-2026-49172
- EPSS 0.67%
- Veröffentlicht 14.07.2026 17:04:31
- Zuletzt bearbeitet 23.07.2026 05:16:32
Heap-based buffer overflow in Windows FTP Service allows an unauthorized attacker to execute code over a network.
CVE-2026-49175
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:04:31
- Zuletzt bearbeitet 22.07.2026 16:17:28
Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.
CVE-2026-49171
- EPSS 0.22%
- Veröffentlicht 14.07.2026 17:04:30
- Zuletzt bearbeitet 22.07.2026 16:17:27
Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally.
CVE-2026-49176
- EPSS 0.47%
- Veröffentlicht 14.07.2026 17:04:30
- Zuletzt bearbeitet 22.07.2026 16:17:28
Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally.
CVE-2026-49170
- EPSS 2.8%
- Veröffentlicht 14.07.2026 17:04:29
- Zuletzt bearbeitet 22.07.2026 16:17:27
Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally.
CVE-2026-49168
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:04:28
- Zuletzt bearbeitet 22.07.2026 16:17:27
Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to elevate privileges with a physical attack.
CVE-2026-49166
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:04:27
- Zuletzt bearbeitet 22.07.2026 16:17:27
Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally.