Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 48 min 44 sec ago

CVE-2026-61364 Windows Remote Desktop Services Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61365 Windows Remote Desktop Services Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61357 Application Information Services Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61358 Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61360 Windows GDI Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-61920 Windows DNS Server Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-61926 Windows USB Driver Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61918 Windows Remote Desktop Client Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-61921 Windows Remote Desktop Client Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-61929 Windows Kernel Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-61938 Windows Installer Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62698 Microsoft Digest Authentication Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62700 Windows NTFS Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62701 Windows Telephony Service Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62708 Windows Kernel Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.
Categories: Microsoft

CVE-2026-62709 Windows GDI+ Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-62710 Windows Device Association Service Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62711 Windows Win32k Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-62720 Windows DHCP Server Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Categories: Microsoft

CVE-2026-62714 Windows DHCP Server Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
Categories: Microsoft

Pages