- EPSS 0.49%
- Veröffentlicht 14.07.2026 17:08:22
- Zuletzt bearbeitet 21.07.2026 19:55:26
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to elevate privileges over an adjacent network.
CVE-2026-50685
- EPSS 0.62%
- Veröffentlicht 14.07.2026 17:08:21
- Zuletzt bearbeitet 21.07.2026 19:55:20
Double free in Windows DHCP Server allows an authorized attacker to execute code over a network.
CVE-2026-50681
- EPSS 0.46%
- Veröffentlicht 14.07.2026 17:08:20
- Zuletzt bearbeitet 22.07.2026 16:18:10
Exposure of sensitive information to an unauthorized actor in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
- EPSS 1.05%
- Veröffentlicht 14.07.2026 17:08:20
- Zuletzt bearbeitet 21.07.2026 19:54:33
Improper authorization in Active Directory Certificate Services (AD CS) allows an authorized attacker to elevate privileges over a network.
CVE-2026-50688
- EPSS 1.72%
- Veröffentlicht 14.07.2026 17:08:19
- Zuletzt bearbeitet 16.07.2026 19:58:42
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50684
- EPSS 0.37%
- Veröffentlicht 14.07.2026 17:08:18
- Zuletzt bearbeitet 21.07.2026 19:55:23
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
CVE-2026-54115
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:17
- Zuletzt bearbeitet 21.07.2026 19:54:45
Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.
CVE-2026-50673
- EPSS 0.2%
- Veröffentlicht 14.07.2026 17:08:15
- Zuletzt bearbeitet 16.07.2026 19:59:23
Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-50668
- EPSS 0.31%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:03:36
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:08:13
- Zuletzt bearbeitet 22.07.2026 15:26:44
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.