Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 380 183

Количество 380 183

nvd логотип

CVE-2026-61363

9 дней назад

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-61361

9 дней назад

Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-61360

9 дней назад

Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2026-6135

4 месяца назад

A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-61359

9 дней назад

Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61358

9 дней назад

Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61357

9 дней назад

Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61356

9 дней назад

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61355

9 дней назад

Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61353

9 дней назад

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61352

9 дней назад

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-61350

9 дней назад

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

CVSS3: 4.6
EPSS: Низкий
nvd логотип

CVE-2026-6134

4 месяца назад

A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-61349

9 дней назад

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-61348

9 дней назад

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-61347

9 дней назад

Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2026-61346

9 дней назад

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2026-61345

9 дней назад

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-61344

около 1 месяца назад

The Superior Court of California Hearing Reminder Service at https://www.hrs.courts.ca.gov exposes an API endpoint that returns court reminder records containing potentially sensitive information without authentication.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-61343

около 1 месяца назад

LibreBooking's email template editor save action passes the submitted template name directly into the destination file path, allowing a remote attacker with administrator credentials to write an arbitrary file outside the template directory and execute code. Fixed in 5.1.0.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-61363

Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVSS3: 7.5
1%
Низкий
9 дней назад
nvd логотип
CVE-2026-61361

Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.

CVSS3: 7
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61360

Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.

CVSS3: 5.5
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-6135

A weakness has been identified in Tenda F451 1.0.0.7_cn_svn7958. This issue affects the function fromSetIpBind of the file /goform/SetIpBind. Executing a manipulation of the argument page can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks.

CVSS3: 8.8
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-61359

Heap-based buffer overflow in Windows Storage allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61358

Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
4%
Низкий
9 дней назад
nvd логотип
CVE-2026-61357

Use after free in Application Information Services allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61356

Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61355

Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61353

Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61352

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

CVSS3: 7.5
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61350

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

CVSS3: 4.6
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-6134

A security flaw has been discovered in Tenda F451 1.0.0.7_cn_svn7958. This vulnerability affects the function fromqossetting of the file /goform/qossetting. Performing a manipulation of the argument qos results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 8.8
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-61349

Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61348

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVSS3: 7
2%
Низкий
9 дней назад
nvd логотип
CVE-2026-61347

Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.

CVSS3: 5.5
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61346

Use after free in Windows Graphics Kernel allows an authorized attacker to elevate privileges locally.

CVSS3: 7
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-61345

Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.

CVSS3: 6.5
1%
Низкий
9 дней назад
nvd логотип
CVE-2026-61344

The Superior Court of California Hearing Reminder Service at https://www.hrs.courts.ca.gov exposes an API endpoint that returns court reminder records containing potentially sensitive information without authentication.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-61343

LibreBooking's email template editor save action passes the submitted template name directly into the destination file path, allowing a remote attacker with administrator credentials to write an arbitrary file outside the template directory and execute code. Fixed in 5.1.0.

CVSS3: 7.2
1%
Низкий
около 1 месяца назад

Уязвимостей на страницу