CVE-2026-50656

3 karet z 4 položek · v celém archivu · celý přehled CZ · EN/orig

CVE-2026-50656

EPSS 0.11

Hodnocení závažnosti

7.8 CVSS 3.1 microsoft

útok z místního přístupu bez přípravy stačí běžný účet bez zásahu uživatele
dopad plný únik dat úplná změna dat úplný výpadek
přesah dopad jen na zranitelnou součást

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:U/RC:C

zvyšuje závažnost mírně zvyšuje závažnost snižuje závažnost

1

CVE-2026-69414 ShieldBreak Zero-Day: No Patch, and CISA BOD 26-04 Gives You 14 Days

Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsoft Defender, allowing a low-privilege local attacker to escalate to SYSTEM. A public PoC was released on August 12, 2026, and Microsoft assigned the CVE on August 14, and no patch is available yet. Qualys VMDR provides detection across Windows environments, and Qualys TruRisk Eliminate offers a mitigation that teams can apply now, with…

EPSS 0.11 CVE-2026-50656 CVE-2026-69414 Microsoft Qualys US

Qualys ·

1

Patch Tuesday - August 2026

Microsoft is publishing 421 vulnerabilities on August 2026 Patch Tuesday, including 236 vulnerabilities in Windows. This is lower volume than last month’s record-breaking behemoth, but still one of the largest Patch Tuesday totals ever. There is no reason to suppose that Patch Tuesday will ever return to the lower volumes we saw prior to 2026. Microsoft is aware of exploitation in the wild for one of the vulnerabilities published today, as well as public disclosure for two others, although the…

KEV ✓ EPSS 0.40 CVSS 5.5 CVE-2026-50656 CVE-2026-55040 CVE-2026-62832 CVE-2026-63520 CVE-2026-6726 CVE-2026-6727 CVE-2026-68820 CVE-2026-72971 Microsoft US

Rapid7 ·

1