CVE-2026-62736 Windows DHCP Client Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62736 US
Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62736 US
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62734 US
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62732 US
Buffer over-read in Windows Wired AutoConfig Service allows an authorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-62730 US
Out-of-bounds read in Windows Win32K allows an authorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-62743 US
Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62733 US
Time-of-check time-of-use (toctou) race condition in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62728 US
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62726 US
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62725 US
Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62721 US
Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62717 US
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
EPSS 0.00 CVE-2026-62714 US
Integer underflow (wrap or wraparound) in Windows DHCP Server allows an unauthorized attacker to disclose information over an adjacent network.
EPSS 0.00 CVE-2026-62720 US
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62711 US
Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62710 US
Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-62709 US
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges with a physical attack.
EPSS 0.00 CVE-2026-62708 US
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62701 US
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62700 US
Numeric truncation error in Microsoft Digest Authentication allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-62698 Microsoft US
Use after free in Windows Installer allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61938 US
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
EPSS 0.02 CVE-2026-61929 US
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-61921 US
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-61918 US
Heap-based buffer overflow in Windows USB Driver allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61926 US
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an authorized attacker to execute code over a network.
EPSS 0.00 CVE-2026-61920 veřejná správa US
Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-61360 US
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
EPSS 0.04 CVE-2026-61358 US
Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61357 US
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61365 US
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61364 US
Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61355 US
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-61363 US
Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-61349 US
No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-59131 AMD US
Use after free in Virtual Hard Disk (VHD) Miniport Driver allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-59125 US
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-59122 US
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
EPSS 0.00 CVE-2026-58651 Microsoft US
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-58641 US
Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a security feature locally.
EPSS 0.00 CVE-2026-54981 US
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
EPSS 0.00 CVE-2026-70339 Microsoft US
Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.
EPSS 0.00 CVE-2026-72971 US
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
EPSS 0.00 CVE-2026-70355 Microsoft US
Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70347 US
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70346 US
Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70345 US
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70344 US
Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-65783 US
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
EPSS 0.00 CVE-2026-61352 US
Missing authorization in Azure CycleCloud allows an authorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-65806 US
Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-70340 US
Improper control of generation of code ('code injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-70336 US
Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70335 US
Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70330 US
Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.
EPSS 0.00 CVE-2026-70304 US
Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
EPSS 0.01 CVE-2026-70329 Microsoft US
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-70328 Microsoft US
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
EPSS 0.01 CVE-2026-70327 Microsoft US
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
EPSS 0.01 CVE-2026-70324 Microsoft US
Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.
EPSS 0.00 CVE-2026-70322 Microsoft US