Vulnerabilities
Vulnerable Software
Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.003
Published
2026-08-11
Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.033
Published
2026-08-11
Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.004
Published
2026-08-11
Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.004
Published
2026-08-11
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
CVSS Score
7.0
EPSS Score
0.014
Published
2026-08-11
Use after free in Windows Work Folder Service allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.002
Published
2026-08-11
Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.
CVSS Score
4.6
EPSS Score
0.005
Published
2026-08-11
Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVSS Score
7.5
EPSS Score
0.004
Published
2026-08-11
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.003
Published
2026-08-11
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.004
Published
2026-08-11


Contact Us

Shodan ® - All rights reserved