Vulnerabilidades CVE

A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:

Borrar filtros
CVE ID Publicado Severidad CVSS Descripción
CVE-2026-62773 2026-08-11 HIGH 7.0 Use after free in Windows Kerberos allows an authorized attacker to elevate privileges locally.
CVE-2026-62772 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to elevate privileges locally.
CVE-2026-62771 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62768 2026-08-11 HIGH 7.8 Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-62766 2026-08-11 HIGH 7.0 Double free in Windows Kerberos allows an authorized attacker to elevate privileges locally.
CVE-2026-62761 2026-08-11 HIGH 7.8 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.
CVE-2026-62755 2026-08-11 HIGH 7.8 Stack-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
CVE-2026-62754 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Kerberos allows an authorized attacker to elevate privileges locally.
CVE-2026-62753 2026-08-11 HIGH 7.0 Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-62750 2026-08-11 MEDIUM 6.5 Partial string comparison in Windows HTTP Protocol Stack allows an unauthorized attacker to perform tampering over an adjacent network.
CVE-2026-62748 2026-08-11 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62739 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-62737 2026-08-11 HIGH 7.8 Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-62734 2026-08-11 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62732 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62728 2026-08-11 HIGH 7.0 Time-of-check time-of-use (toctou) race condition in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62726 2026-08-11 HIGH 7.0 Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62725 2026-08-11 HIGH 7.0 Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62722 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62721 2026-08-11 HIGH 7.8 Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.
CVE-2026-62717 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
CVE-2026-62716 2026-08-11 MEDIUM 6.5 Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
CVE-2026-62712 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62711 2026-08-11 HIGH 7.8 Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
CVE-2026-62710 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
CVE-2026-62707 2026-08-11 HIGH 7.8 Use after free in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.
CVE-2026-62705 2026-08-11 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bind Filter Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-62700 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
CVE-2026-62693 2026-08-11 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.
CVE-2026-62692 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-62690 2026-08-11 HIGH 7.0 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
CVE-2026-61938 2026-08-11 HIGH 7.0 Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-61937 2026-08-11 HIGH 7.8 Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
CVE-2026-61932 2026-08-11 HIGH 7.8 Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2026-61930 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-61929 2026-08-11 HIGH 7.0 Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-61926 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-61925 2026-08-11 HIGH 7.8 Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2026-61920 2026-08-11 MEDIUM 6.6 Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute code over a network.
CVE-2026-61918 2026-08-11 MEDIUM 6.5 Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
CVE-2026-61365 2026-08-11 HIGH 7.8 Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-61364 2026-08-11 HIGH 7.8 Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVE-2026-61363 2026-08-11 HIGH 7.5 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-61359 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.
CVE-2026-61358 2026-08-11 HIGH 7.8 Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
CVE-2026-61353 2026-08-11 HIGH 7.8 Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVE-2026-61352 2026-08-11 HIGH 7.5 Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-59134 2026-08-11 HIGH 7.5 Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVE-2026-59125 2026-08-11 HIGH 7.0 Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
CVE-2026-59124 2026-08-11 CRITICAL 9.8 Deserialization of untrusted data in Microsoft High Performance Computing (HPC) Pack allows an unauthorized attacker to execute code over a network.
« Anterior Página 48 de 4839 Siguiente »