CVE-2026-49800
- EPSS 2.11%
- Veröffentlicht 14.07.2026 17:05:59
- Zuletzt bearbeitet 22.07.2026 16:17:34
Integer overflow or wraparound in Windows Web Proxy Auto-Discovery Protocol (WPAD) allows an authorized attacker to elevate privileges locally.
CVE-2026-50299
- EPSS 0.33%
- Veröffentlicht 14.07.2026 17:05:59
- Zuletzt bearbeitet 22.07.2026 16:17:36
Integer overflow or wraparound in Windows Storage Spaces Direct allows an unauthorized attacker to execute code with a physical attack.
CVE-2026-49798
- EPSS 2.29%
- Veröffentlicht 14.07.2026 17:05:58
- Zuletzt bearbeitet 22.07.2026 16:17:33
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
CVE-2026-49797
- EPSS 0.36%
- Veröffentlicht 14.07.2026 17:05:57
- Zuletzt bearbeitet 22.07.2026 16:17:33
Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.
CVE-2026-49795
- EPSS 1.9%
- Veröffentlicht 14.07.2026 17:05:56
- Zuletzt bearbeitet 22.07.2026 16:17:32
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-49796
- EPSS 0.39%
- Veröffentlicht 14.07.2026 17:05:56
- Zuletzt bearbeitet 22.07.2026 16:17:32
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
CVE-2026-49794
- EPSS 0.35%
- Veröffentlicht 14.07.2026 17:05:55
- Zuletzt bearbeitet 22.07.2026 16:17:32
Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.
CVE-2026-49789
- EPSS 0.28%
- Veröffentlicht 14.07.2026 17:05:52
- Zuletzt bearbeitet 22.07.2026 16:17:31
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-49787
- EPSS 0.82%
- Veröffentlicht 14.07.2026 17:05:51
- Zuletzt bearbeitet 22.07.2026 16:17:30
Allocation of resources without limits or throttling in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.
- EPSS 0.15%
- Veröffentlicht 14.07.2026 17:05:50
- Zuletzt bearbeitet 22.07.2026 16:17:29
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.