- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:12:26
- Zuletzt bearbeitet 24.09.2026 23:18:43
Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
CVE-2026-71337
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:12:26
- Zuletzt bearbeitet 15.09.2026 13:08:44
Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally.
CVE-2026-71330
- EPSS 0.79%
- Veröffentlicht 08.09.2026 17:12:25
- Zuletzt bearbeitet 24.09.2026 23:18:42
Exposure of sensitive system information to an unauthorized control sphere in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to disclose information over a network.
CVE-2026-70587
- EPSS 0.79%
- Veröffentlicht 08.09.2026 17:12:24
- Zuletzt bearbeitet 24.09.2026 23:18:42
Improper null termination in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.
CVE-2026-71329
- EPSS 0.31%
- Veröffentlicht 08.09.2026 17:12:24
- Zuletzt bearbeitet 24.09.2026 23:18:42
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-70586
- EPSS 0.82%
- Veröffentlicht 08.09.2026 17:12:23
- Zuletzt bearbeitet 24.09.2026 23:18:42
Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over a network.
CVE-2026-70564
- EPSS 0.32%
- Veröffentlicht 08.09.2026 17:12:21
- Zuletzt bearbeitet 24.09.2026 23:18:40
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges locally.
CVE-2026-70582
- EPSS 0.22%
- Veröffentlicht 08.09.2026 17:12:21
- Zuletzt bearbeitet 28.09.2026 20:20:35
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Management Instrumentation allows an authorized attacker to elevate privileges locally.
- EPSS 0.25%
- Veröffentlicht 08.09.2026 17:12:20
- Zuletzt bearbeitet 24.09.2026 23:18:39
Double free in Windows Audio Service allows an authorized attacker to elevate privileges locally.
CVE-2026-70563
- EPSS 0.87%
- Veröffentlicht 08.09.2026 17:12:20
- Zuletzt bearbeitet 24.09.2026 23:18:39
Improper link resolution before file access ('link following') in Windows Shell allows an unauthorized attacker to perform spoofing over a network.