CVE-2026-49167
- EPSS 0.25%
- Veröffentlicht 14.07.2026 17:04:27
- Zuletzt bearbeitet 22.07.2026 16:17:27
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-49164
- EPSS 0.65%
- Veröffentlicht 14.07.2026 17:04:26
- Zuletzt bearbeitet 22.07.2026 16:17:26
Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.
CVE-2026-49165
- EPSS 0.24%
- Veröffentlicht 14.07.2026 17:04:26
- Zuletzt bearbeitet 29.07.2026 20:17:03
Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclose information locally.
- EPSS 0.21%
- Veröffentlicht 14.07.2026 17:04:25
- Zuletzt bearbeitet 22.07.2026 16:17:26
Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:04:25
- Zuletzt bearbeitet 22.07.2026 16:17:26
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
CVE-2026-42990
- EPSS 0.67%
- Veröffentlicht 14.07.2026 17:04:24
- Zuletzt bearbeitet 22.07.2026 16:17:22
Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.
- EPSS 0.16%
- Veröffentlicht 14.07.2026 17:04:24
- Zuletzt bearbeitet 16.07.2026 16:23:25
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-42975
- EPSS 0.34%
- Veröffentlicht 14.07.2026 17:04:21
- Zuletzt bearbeitet 23.07.2026 05:16:30
Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.
CVE-2026-42900
- EPSS 0.39%
- Veröffentlicht 14.07.2026 17:04:20
- Zuletzt bearbeitet 23.07.2026 05:16:30
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-34346
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:04:19
- Zuletzt bearbeitet 22.07.2026 16:17:17
Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized attacker to disclose information locally.