Feed aggregator

CVE-2026-48561 Microsoft Copilot Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42982 Windows Secure Kernel Mode Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Improper validation of consistency within input in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-47296 Microsoft SQL Server Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-34349 Windows Media Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Media allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Cleartext transmission of sensitive information in Windows Ancillary Function Driver for WinSock allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42900 Microsoft Windows App Store Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-42975 Windows Bluetooth Port Driver Remote Code Execution

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network.
Categories: Microsoft

CVE-2026-47300 ASP.NET Core Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-47302 .NET Denial of Service Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.
Categories: Microsoft

CVE-2026-47303 ASP.NET Core Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
Categories: Microsoft

CVE-2026-42990 SQL Server ODBC driver Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Heap-based buffer overflow in SQL Server ODBC driver allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-48572 Windows App Package Installer Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-48571 Windows App Package Installer Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-49162 Microsoft Brokering File System Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 07/14/2026 - 14:00
Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator