CVE-2026-73023
- EPSS 0.57%
- Veröffentlicht 08.09.2026 17:18:07
- Zuletzt bearbeitet 24.09.2026 23:18:57
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.
CVE-2026-73006
- EPSS 0.82%
- Veröffentlicht 08.09.2026 17:18:06
- Zuletzt bearbeitet 10.09.2026 19:02:26
Stack-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
CVE-2026-73009
- EPSS 0.91%
- Veröffentlicht 08.09.2026 17:18:05
- Zuletzt bearbeitet 24.09.2026 23:18:55
Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.
CVE-2026-73012
- EPSS 0.62%
- Veröffentlicht 08.09.2026 17:18:05
- Zuletzt bearbeitet 24.09.2026 23:18:55
Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges over a network.
CVE-2026-73026
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:18:04
- Zuletzt bearbeitet 10.09.2026 18:54:36
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-73007
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:18:03
- Zuletzt bearbeitet 12.09.2026 04:16:37
Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.
CVE-2026-73024
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:18:03
- Zuletzt bearbeitet 24.09.2026 23:18:57
Heap-based buffer overflow in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to elevate privileges locally.
- EPSS 0.19%
- Veröffentlicht 08.09.2026 17:18:02
- Zuletzt bearbeitet 17.09.2026 20:08:40
Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
CVE-2026-73008
- EPSS 0.47%
- Veröffentlicht 08.09.2026 17:18:01
- Zuletzt bearbeitet 10.09.2026 19:01:12
Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.
CVE-2026-73014
- EPSS 0.27%
- Veröffentlicht 08.09.2026 17:18:01
- Zuletzt bearbeitet 23.09.2026 13:13:23
Missing authorization in Data Sharing Service Client allows an authorized attacker to elevate privileges locally.