CVE-2026-61364 Windows Remote Desktop Services Elevation of Privilege Vulnerability
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61365 Windows Remote Desktop Services Elevation of Privilege Vulnerability
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61357 Application Information Services Elevation of Privilege Vulnerability
Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61358 Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61360 Windows GDI Information Disclosure Vulnerability
Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-61920 Windows DNS Server Remote Code Execution Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute code over a network.
Categories: Microsoft
CVE-2026-61926 Windows USB Driver Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61918 Windows Remote Desktop Client Information Disclosure Vulnerability
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-61921 Windows Remote Desktop Client Information Disclosure Vulnerability
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft
CVE-2026-61929 Windows Kernel Elevation of Privilege Vulnerability
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-61938 Windows Installer Elevation of Privilege Vulnerability
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62698 Microsoft Digest Authentication Elevation of Privilege Vulnerability
Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62700 Windows NTFS Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62701 Windows Telephony Service Elevation of Privilege Vulnerability
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62708 Windows Kernel Elevation of Privilege Vulnerability
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.
Categories: Microsoft
CVE-2026-62709 Windows GDI+ Information Disclosure Vulnerability
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.
Categories: Microsoft
CVE-2026-62710 Windows Device Association Service Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62711 Windows Win32k Elevation of Privilege Vulnerability
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
Categories: Microsoft
CVE-2026-62720 Windows DHCP Server Information Disclosure Vulnerability
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Categories: Microsoft
CVE-2026-62714 Windows DHCP Server Information Disclosure Vulnerability
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Categories: Microsoft


