CVE-2026-24293
- EPSS 0.51%
- Veröffentlicht 10.03.2026 17:04:44
- Zuletzt bearbeitet 13.03.2026 19:00:51
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVE-2026-24292
- EPSS 0.34%
- Veröffentlicht 10.03.2026 17:04:43
- Zuletzt bearbeitet 13.03.2026 19:02:15
Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.
CVE-2026-24289
- EPSS 4.49%
- Veröffentlicht 10.03.2026 17:04:42
- Zuletzt bearbeitet 13.03.2026 19:15:45
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-24290
- EPSS 0.33%
- Veröffentlicht 10.03.2026 17:04:42
- Zuletzt bearbeitet 13.03.2026 19:14:28
Improper access control in Windows Projected File System allows an authorized attacker to elevate privileges locally.
CVE-2026-24283
- EPSS 0.38%
- Veröffentlicht 10.03.2026 17:04:39
- Zuletzt bearbeitet 13.03.2026 19:26:14
Heap-based buffer overflow in Windows File Server allows an authorized attacker to elevate privileges locally.
CVE-2026-2636
- EPSS 0.41%
- Veröffentlicht 25.02.2026 18:57:02
- Zuletzt bearbeitet 15.04.2026 00:35:42
This vulnerability is caused by a CWE‑159: "Improper Handling of Invalid Use of Special Elements" weakness, which leads to an unrecoverable inconsistency in the CLFS.sys driver. This condition forces a call to the KeBugCheckEx function, allowing an u...
CVE-2026-20929
- EPSS 1.16%
- Veröffentlicht 13.01.2026 17:57:02
- Zuletzt bearbeitet 30.07.2026 21:17:09
Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.
CVE-2026-20920
- EPSS 0.49%
- Veröffentlicht 13.01.2026 17:56:38
- Zuletzt bearbeitet 30.07.2026 21:17:08
Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
CVE-2025-55332
- EPSS 0.54%
- Veröffentlicht 14.10.2025 17:01:02
- Zuletzt bearbeitet 27.10.2025 15:24:44
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
CVE-2025-55330
- EPSS 0.54%
- Veröffentlicht 14.10.2025 17:01:00
- Zuletzt bearbeitet 27.10.2025 14:55:48
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.