Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 31 min 3 sec ago

CVE-2026-65781 Windows Autopilot Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65790 Windows Message Queuing Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65791 Windows iSCSI Target Service Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-65795 Windows DNS Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
No cwe for this issue in Windows DNS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65794 Windows SMB Client Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Buffer over-read in Windows SMB Client allows an unauthorized attacker to disclose information over a network.
Categories: Microsoft

CVE-2026-65797 Windows DNS Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65799 Windows DNS Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Integer overflow or wraparound in Windows DNS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65798 Windows DNS Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-65796 Windows iSCSI Target Service Denial of Service Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-65810 .NET Framework Elevation of Privilege Vulnerability

Tue, 08/11/2026 - 14:00
Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-66802 Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-66805 Microsoft SharePoint Server Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-66806 Microsoft Office Word Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Off-by-one error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-66807 Microsoft Office Graphics Component Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-66808 Microsoft SharePoint Server Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-66810 Microsoft Office Word Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-66809 Microsoft Office Graphics Component Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-68797 Microsoft Excel Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-68798 Microsoft Excel Remote Code Execution Vulnerability

Tue, 08/11/2026 - 14:00
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Categories: Microsoft

CVE-2026-68799 Microsoft Excel Information Disclosure Vulnerability

Tue, 08/11/2026 - 14:00
Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Categories: Microsoft

Pages