Security Briefs
Page 12 of 141.
Alerts tracked
3939
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 5, 2026, 6:01 AM UTC.
Showing page 12 (24 alerts) of 3384.
Windows DHCP Server Denial of Service vulnerability
Windows DHCP Server Denial of Service vulnerability (CVE-2026-77501) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Device Association Service Elevation of Privilege vulnerability
Windows Device Association Service Elevation of Privilege vulnerability (CVE-2026-77500) was added to Microsoft’s security update guidance. <p>Release of invalid pointer or reference in Windows Device Association Service allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Denial of Service vulnerability
Windows DHCP Server Denial of Service vulnerability (CVE-2026-77499) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Denial of Service vulnerability
Windows DHCP Server Denial of Service vulnerability (CVE-2026-77498) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Imaging Component Remote Code Execution vulnerability
Windows Imaging Component Remote Code Execution vulnerability (CVE-2026-77495) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Denial of Service vulnerability
Windows DHCP Server Denial of Service vulnerability (CVE-2026-77494) was added to Microsoft’s security update guidance. <p>Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Graphics Component Remote Code Execution vulnerability
Windows Graphics Component Remote Code Execution vulnerability (CVE-2026-77493) was added to Microsoft’s security update guidance. <p>Double free in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Storage Port Driver Information Disclosure vulnerability
Windows Storage Port Driver Information Disclosure vulnerability (CVE-2026-77492) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Storage Port Driver allows an authorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows GDI Information Disclosure vulnerability
Windows GDI Information Disclosure vulnerability (CVE-2026-77491) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Biometric Service Elevation of Privilege vulnerability
Windows Biometric Service Elevation of Privilege vulnerability (CVE-2026-77489) was added to Microsoft’s security update guidance. <p>Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Information Disclosure vulnerability
Microsoft SQL Server Information Disclosure vulnerability (CVE-2026-77488) was added to Microsoft’s security update guidance. <p>Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.
SQL Server Elevation of Privilege vulnerability
SQL Server Elevation of Privilege vulnerability (CVE-2026-77487) was added to Microsoft’s security update guidance. <p>Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Remote Code Execution vulnerability
Microsoft SQL Server Remote Code Execution vulnerability (CVE-2026-77486) was added to Microsoft’s security update guidance. <p>Integer overflow or wraparound in SQL Server allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
SQL Server Elevation of Privilege vulnerability
SQL Server Elevation of Privilege vulnerability (CVE-2026-77485) was added to Microsoft’s security update guidance. <p>Use after free in SQL Server allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Remote Code Execution vulnerability
Microsoft SQL Server Remote Code Execution vulnerability (CVE-2026-77484) was added to Microsoft’s security update guidance. <p>Deserialization of untrusted data in SQL Server allows an authorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
SQL Server Elevation of Privilege vulnerability
SQL Server Elevation of Privilege vulnerability (CVE-2026-77483) was added to Microsoft’s security update guidance. <p>Weak authentication in SQL Server allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Remote Code Execution vulnerability
Microsoft SQL Server Remote Code Execution vulnerability (CVE-2026-77482) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in SQL Server allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Remote Code Execution vulnerability
Microsoft SQL Server Remote Code Execution vulnerability (CVE-2026-77481) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
SQL Server Elevation of Privilege vulnerability
SQL Server Elevation of Privilege vulnerability (CVE-2026-77480) was added to Microsoft’s security update guidance. <p>Insufficient granularity of access control in SQL Server allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.
Microsoft SQL Server Information Disclosure vulnerability
Microsoft SQL Server Information Disclosure vulnerability (CVE-2026-73029) was added to Microsoft’s security update guidance. <p>Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.
SQL Server Elevation of Privilege vulnerability
SQL Server Elevation of Privilege vulnerability (CVE-2026-73028) was added to Microsoft’s security update guidance. <p>Improper access control in SQL Server allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Biometric Service Elevation of Privilege vulnerability
Windows Biometric Service Elevation of Privilege vulnerability (CVE-2026-73026) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows iSCSI Security Feature Bypass vulnerability
Windows iSCSI Security Feature Bypass vulnerability (CVE-2026-73025) was added to Microsoft’s security update guidance. <p>Weak authentication in Windows iSCSI allows an unauthorized attacker to bypass a security feature over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Services for NFS ONCRPC XDR Driver Elevation of Privilege vulnerability
Windows Services for NFS ONCRPC XDR Driver Elevation of Privilege vulnerability (CVE-2026-73024) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.