EN
en direct
cve

Archive complète

Veille des vulnérabilités
identifiantvulnérabilitésévéritépublié
CVE-2026-50337Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50338Improper authentication in Azure Spring Apps allows an authorized attacker to elevate privileges over a network.Microsoft Azure Spring Cloud Élevée CVSS 8.2 14/07 CVE-2026-50340Use after free in Windows Runtime allows an authorized attacker to elevate privileges over a network.Microsoft Windows 11 24h2 Élevée CVSS 8.8 14/07 CVE-2026-50342Improper access control in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 8.8 14/07 CVE-2026-50343Improper privilege management in Microsoft Install Service allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50344Improper authorization in Windows OLE allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50345Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7 14/07 CVE-2026-50346Improper authorization in RPC Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50347Heap-based buffer overflow in Windows Data dll allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50348Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.Microsoft Windows 10 1809 Élevée CVSS 8.1 14/07 CVE-2026-50351Improper access control in Windows Audio Compression Manager (ACM) allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50353Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50354Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.1 14/07 CVE-2026-50355Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.Microsoft Windows 10 1607 Élevée CVSS 7.5 14/07 CVE-2026-50356Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Windows App Store allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7 14/07 CVE-2026-50357Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50358Use after free in Windows Media allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50359Use after free in Microsoft XML Core Services allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50360Incorrect implementation of authentication algorithm in Windows SMB Server allows an authorized attacker to elevate privileges over a network.Microsoft Windows 10 21h2 Élevée CVSS 8.8 14/07 CVE-2026-50361Double free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50362Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50363Heap-based buffer overflow in Windows Push Notifications allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50364Improper link resolution before file access ('link following') in Windows Server Backup allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.3 14/07 CVE-2026-50365Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.Microsoft Windows 10 1607 Élevée CVSS 8 14/07 CVE-2026-50367Incorrect access of indexable resource ('range error') in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50368Stack-based buffer overflow in Active Directory Federation Services allows an unauthorized attacker to deny service over a network.Microsoft Windows 10 1607 Élevée CVSS 7.5 14/07 CVE-2026-50369Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.Microsoft Windows 10 1607 Élevée CVSS 8.8 14/07 CVE-2026-50370Heap-based buffer overflow in Windows DHCP Server allows an unauthorized attacker to execute code over an adjacent network.Microsoft Windows 10 1607 Élevée CVSS 8.8 14/07 CVE-2026-50371Concurrent execution using shared resource with improper synchronization ('race condition') in Windows LUAFV allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7 14/07 CVE-2026-50372Buffer over-read in Windows Redirected Drive Buffering allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7 14/07 CVE-2026-50373Improper access control in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50375Heap-based buffer overflow in Windows DirectX allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50377Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50378Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7 14/07 CVE-2026-50379Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges over a network.Microsoft Windows 11 24h2 Élevée CVSS 7.5 14/07 CVE-2026-50380Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.Microsoft Windows 10 1607 Critique CVSS 9.6 14/07 CVE-2026-50382Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally.Microsoft Windows 10 1809 Élevée CVSS 8.8 14/07 CVE-2026-50384Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clip Service allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7 14/07 CVE-2026-50385Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 8.8 14/07 CVE-2026-50386Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50387Stack-based buffer overflow in Windows GDI allows an authorized attacker to elevate privileges locally.Microsoft 365 Copilot Élevée CVSS 7.8 14/07 CVE-2026-50388Out-of-bounds read in Windows NTFS allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50390Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50391Improper privilege management in Windows Group Policy allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50392Use after free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7 14/07 CVE-2026-50393Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50396Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50397Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7 14/07 CVE-2026-50398Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges over a network.Microsoft Windows 11 24h2 Élevée CVSS 7.5 14/07 CVE-2026-50399Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.8 14/07 CVE-2026-5040TP-Link Deco M5 v1 uses a weak password hashing mechanism to store user credentials. An attacker who obtains the password hash through system compromise or privileged access could perform brute-force or dictionary attacks. Successful exploitation may result in disclosure of authentication credentials, enabling unauthorized access to device management functions, depending on the privileges associated with the recovered password. The primary security impact is loss of confidentiality.Analyse NVD en cours Élevée CVSS 7.1 14/07 CVE-2026-50400Stack-based buffer overflow in Windows App Installer allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50402Incorrect conversion between numeric types in Windows NTFS allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50403Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7 14/07 CVE-2026-50404Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7 14/07 CVE-2026-50405Insufficient granularity of access control in Windows Filtering Platform (WFP) allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50406Use after free in Windows Backup Engine allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.8 14/07 CVE-2026-50407Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50410Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7 14/07 CVE-2026-50411Stack-based buffer overflow in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.Microsoft Windows 10 1607 Élevée CVSS 7.5 14/07 CVE-2026-50412Stack-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50413Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50414Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges over a network.Microsoft Windows 11 24h2 Élevée CVSS 8.8 14/07 CVE-2026-50415Exposure of sensitive information to an unauthorized actor in Windows Media allows an unauthorized attacker to disclose information over a network.Microsoft Windows 10 1809 Élevée CVSS 7.5 14/07 CVE-2026-50417Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50421Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50422Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50423Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.8 14/07 CVE-2026-50424Untrusted pointer dereference in Windows Domain Controller allows an unauthorized attacker to deny service over a network.Microsoft Windows 11 24h2 Élevée CVSS 7.5 14/07 CVE-2026-50425Use after free in Windows Internal System User Profile allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.8 14/07 CVE-2026-50427Use after free in Content Delivery Manager allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50429Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.Microsoft Windows 10 1607 Élevée CVSS 8.2 14/07 CVE-2026-50433Use after free in Windows Media allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50435Buffer over-read in Windows Overlay Filter allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50436Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50438Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally.Microsoft Pc Manager Élevée CVSS 8.8 14/07 CVE-2026-50439Use after free in Microsoft Message Queuing Queue Manager allows an unauthorized attacker to execute code over a network.Microsoft Windows 10 1607 Critique CVSS 9.8 14/07 CVE-2026-50440Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Audio Service allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7 14/07 CVE-2026-50441Untrusted pointer dereference in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50444Missing authentication for critical function in Windows Server Update Service allows an authorized attacker to elevate privileges over a network.Microsoft Windows 10 1607 Élevée CVSS 8.8 14/07 CVE-2026-50445Buffer over-read in Windows RDP allows an unauthorized attacker to disclose information over a network.Microsoft Windows 10 1607 Élevée CVSS 7.5 14/07 CVE-2026-50447Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over a network.Microsoft Windows 10 1607 Critique CVSS 9.8 14/07 CVE-2026-50448Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50449Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7 14/07 CVE-2026-50450Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Wireless Wide Area Network Service allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7 14/07 CVE-2026-50451Missing authentication for critical function in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50452Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.Microsoft Windows 10 1809 Élevée CVSS 8.1 14/07 CVE-2026-50454Relative path traversal in Windows User Interface Core allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50457Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50458Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50459Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.Microsoft Windows 10 21h2 Élevée CVSS 7.8 14/07 CVE-2026-50460Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an unauthorized attacker to elevate privileges over a network.Microsoft Windows 10 1809 Élevée CVSS 8.1 14/07 CVE-2026-50461Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50462External control of file name or path in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1607 Élevée CVSS 7.8 14/07 CVE-2026-50463Out-of-bounds read in Windows Kernel allows an unauthorized attacker to disclose information over a network.Microsoft Windows 10 1809 Élevée CVSS 7.5 14/07 CVE-2026-50465Improper access control in Microsoft Windows DNS allows an authorized attacker to perform tampering locally.Microsoft Windows 11 24h2 Élevée CVSS 7.1 14/07 CVE-2026-50466Use after free in Windows Brokering File System allows an authorized attacker to elevate privileges locally.Microsoft Windows 11 24h2 Élevée CVSS 7.8 14/07 CVE-2026-50467Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.Microsoft 365 Apps Élevée CVSS 7.8 14/07 CVE-2026-50469Improper link resolution before file access ('link following') in Windows Projected File System allows an authorized attacker to elevate privileges locally.Microsoft Windows 10 1809 Élevée CVSS 7.8 14/07 CVE-2026-50470Out-of-bounds read in Windows Network Policy Server SNMP allows an unauthorized attacker to disclose information over a network.Microsoft Windows 10 1607 Élevée CVSS 7.5 14/07
2801–2900 / 5155 CVE

Tapez au moins deux caractères.

naviguer ouvrir esc fermer