CVE-2026-69289
- EPSS 0.35%
- Veröffentlicht 08.09.2026 17:15:01
- Zuletzt bearbeitet 24.09.2026 23:17:31
Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows an authorized attacker to elevate privileges locally.
CVE-2026-69297
- EPSS 0.6%
- Veröffentlicht 08.09.2026 17:15:00
- Zuletzt bearbeitet 24.09.2026 23:17:33
Storing passwords in a recoverable format in Windows DHCP Server allows an authorized attacker to disclose information over a network.
CVE-2026-69283
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:14:59
- Zuletzt bearbeitet 24.09.2026 23:17:30
Heap-based buffer overflow in Windows CD-ROM Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-69295
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:14:59
- Zuletzt bearbeitet 24.09.2026 23:17:32
Out-of-bounds read in Windows USB Driver allows an authorized attacker to elevate privileges locally.
- EPSS 0.2%
- Veröffentlicht 08.09.2026 17:14:58
- Zuletzt bearbeitet 30.09.2026 20:56:39
Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-69284
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:14:57
- Zuletzt bearbeitet 24.09.2026 23:17:30
Heap-based buffer overflow in Windows DCOM Server allows an authorized attacker to elevate privileges locally.
CVE-2026-69286
- EPSS 0.4%
- Veröffentlicht 08.09.2026 17:14:57
- Zuletzt bearbeitet 24.09.2026 23:17:31
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to disclose information locally.
CVE-2026-69277
- EPSS 0.33%
- Veröffentlicht 08.09.2026 17:14:56
- Zuletzt bearbeitet 30.09.2026 20:53:27
Stack-based buffer overflow in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges locally.
CVE-2026-69305
- EPSS 0.64%
- Veröffentlicht 08.09.2026 17:14:56
- Zuletzt bearbeitet 24.09.2026 23:17:33
Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network.
CVE-2026-69269
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:14:55
- Zuletzt bearbeitet 30.09.2026 18:16:33
Integer underflow (wrap or wraparound) in Microsoft Standard XPS allows an authorized attacker to elevate privileges locally.