Microsoft

CVE-2026-47291 HTTP.sys Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-47292 Visual Studio Code MSSQL Extension Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-41092 Microsoft Kinect Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper access control in Microsoft Kinect allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-32193 Azure Kubernetes Service (AKS) Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-47298 Microsoft SharePoint Server Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-47631 Microsoft Exchange Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-41098 Azure Stack Edge Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Stack Edge allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-47635 Microsoft Outlook and Word Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-47636 Microsoft SharePoint Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-47637 Microsoft SharePoint Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-47638 Microsoft SharePoint Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-47639 Microsoft SharePoint Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-47641 Microsoft SharePoint Server Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Categories: Microsoft

CVE-2026-45588 Secure Boot Security Feature Bypass Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Categories: Microsoft

CVE-2026-47648 Windows Storage Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-8863 UEFI Secure Boot Security Feature Bypass Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally.
Categories: Microsoft

CVE-2026-47653 Remote Desktop Client Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-47652 Windows Hyper-V Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-47654 Remote Desktop Client Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-48563 Remote Desktop Client Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator - Microsoft