CVE-2026-57979
- EPSS 0.65%
- Veröffentlicht 14.07.2026 17:05:18
- Zuletzt bearbeitet 22.07.2026 16:18:32
Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-57097
- EPSS 0.32%
- Veröffentlicht 14.07.2026 17:05:16
- Zuletzt bearbeitet 22.07.2026 16:18:31
Untrusted search path in Microsoft XML allows an unauthorized attacker to bypass a security feature with a physical attack.
CVE-2026-50694
- EPSS 0.66%
- Veröffentlicht 14.07.2026 17:05:14
- Zuletzt bearbeitet 22.07.2026 16:18:12
Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an unauthorized attacker to execute code over a network.
CVE-2026-56155
- EPSS 2.33%
- Veröffentlicht 14.07.2026 17:05:11
- Zuletzt bearbeitet 15.07.2026 14:18:24
Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locally.
CVE-2026-54122
- EPSS 0.28%
- Veröffentlicht 14.07.2026 17:04:57
- Zuletzt bearbeitet 16.07.2026 12:06:17
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
CVE-2026-54995
- EPSS 0.59%
- Veröffentlicht 14.07.2026 17:04:56
- Zuletzt bearbeitet 20.07.2026 17:18:43
Use after free in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over a network.
CVE-2026-55003
- EPSS 0.65%
- Veröffentlicht 14.07.2026 17:04:56
- Zuletzt bearbeitet 24.07.2026 19:18:49
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-54997
- EPSS 0.3%
- Veröffentlicht 14.07.2026 17:04:55
- Zuletzt bearbeitet 20.07.2026 17:11:08
Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.
CVE-2026-54999
- EPSS 0.29%
- Veröffentlicht 14.07.2026 17:04:55
- Zuletzt bearbeitet 24.07.2026 19:20:37
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code over an adjacent network.
CVE-2026-54119
- EPSS 0.82%
- Veröffentlicht 14.07.2026 17:04:54
- Zuletzt bearbeitet 22.07.2026 16:18:14
Loop with unreachable exit condition ('infinite loop') in Windows Active Directory allows an unauthorized attacker to deny service over a network.