Skip to main content

Security Briefs

Page 56 of 165.

Alerts tracked

3939

Security flaws we track for Upstate SC businesses.

Known exploited

545

On CISA’s list of vulnerabilities attackers are actively using. Patch these first.

New exploited this month

2

Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 7, 2026, 6:01 AM UTC.

Showing page 56 (24 alerts) of 3939.

Actively exploited (KEV)

CVE-2019-1068

Microsoft SQL Server Remote Code Execution Vulnerability

Microsoft SQL Server is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2019-1068). Microsoft SQL Server contains a remote code execution vulnerability that could allow an attacker to execute code in the context of the SQL Server Database Engine service account. CISA remediation due date: 2026-08-29. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-55137

Microsoft Excel Remote Code Execution vulnerability

Microsoft Excel Remote Code Execution vulnerability (CVE-2026-55137) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-50333

Windows Spaceport.sys Elevation of Privilege vulnerability

Windows Spaceport.sys Elevation of Privilege vulnerability (CVE-2026-50333) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-49183

Windows Clipboard Server Elevation of Privilege vulnerability

Windows Clipboard Server Elevation of Privilege vulnerability (CVE-2026-49183) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-45639

Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability

Windows Remote Desktop Protocol (RDP) Information Disclosure vulnerability (CVE-2026-45639) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-50661

Windows BitLocker Security Feature Bypass vulnerability

Windows BitLocker Security Feature Bypass vulnerability (CVE-2026-50661) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-47292

Visual Studio Code MSSQL Extension Remote Code Execution vulnerability

Visual Studio Code MSSQL Extension Remote Code Execution vulnerability (CVE-2026-47292) was added to Microsoft’s security update guidance. Affected software updated with new package information. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-58547

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability (CVE-2026-58547) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-50466

Microsoft Brokering File System Elevation of Privilege vulnerability

Microsoft Brokering File System Elevation of Privilege vulnerability (CVE-2026-50466) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-32202

Windows Shell Spoofing vulnerability

Windows Shell Spoofing vulnerability (CVE-2026-32202) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-70105

Microsoft Word Information Disclosure vulnerability

Microsoft Word Information Disclosure vulnerability (CVE-2026-70105) was added to Microsoft’s security update guidance. Information published. This CVE was addressed by updates that were released in August 2026, but the CVE was inadvertently omitted from the August 2026 Security Updates. This is an informational change only. Customers who have already installed the August 2026 updates do not ne… If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69855

Azure Information Disclosure Vulnerability

Azure Information Disclosure Vulnerability (CVE-2026-69855) was added to Microsoft’s security update guidance. <p>Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69851

Microsoft Entra ID Elevation of Privilege vulnerability

Microsoft Entra ID Elevation of Privilege vulnerability (CVE-2026-69851) was added to Microsoft’s security update guidance. <p>Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69836

Microsoft Entra ID Remote Code Execution vulnerability

Microsoft Entra ID Remote Code Execution vulnerability (CVE-2026-69836) was added to Microsoft’s security update guidance. Corrected **Exploited** to **No**. This vulnerability was not exploited in the wild. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69558

Microsoft Partner Center Information Disclosure vulnerability

Microsoft Partner Center Information Disclosure vulnerability (CVE-2026-69558) was added to Microsoft’s security update guidance. <p>Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69555

Azure Arc Elevation of Privilege vulnerability

Azure Arc Elevation of Privilege vulnerability (CVE-2026-69555) was added to Microsoft’s security update guidance. <p>Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69543

Azure Virtual Machines Elevation of Privilege vulnerability

Azure Virtual Machines Elevation of Privilege vulnerability (CVE-2026-69543) was added to Microsoft’s security update guidance. <p>Server-side request forgery (ssrf) in Azure Virtual Machines allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69519

Azure Stack HCI Information Disclosure vulnerability

Azure Stack HCI Information Disclosure vulnerability (CVE-2026-69519) was added to Microsoft’s security update guidance. <p>Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69502

Azure SQL Database Elevation of Privilege vulnerability

Azure SQL Database Elevation of Privilege vulnerability (CVE-2026-69502) was added to Microsoft’s security update guidance. <p>Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69419

Azure Data Manager for Energy Remote Code Execution vulnerability

Azure Data Manager for Energy Remote Code Execution vulnerability (CVE-2026-69419) was added to Microsoft’s security update guidance. <p>Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-69400

Azure Logic Apps Elevation of Privilege vulnerability

Azure Logic Apps Elevation of Privilege vulnerability (CVE-2026-69400) was added to Microsoft’s security update guidance. <p>Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-68789

Azure SQL Database Elevation of Privilege vulnerability

Azure SQL Database Elevation of Privilege vulnerability (CVE-2026-68789) was added to Microsoft’s security update guidance. <p>Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-68782

Azure SQL Database Elevation of Privilege vulnerability

Azure SQL Database Elevation of Privilege vulnerability (CVE-2026-68782) was added to Microsoft’s security update guidance. <p>Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-66800

Azure Data Factory Information Disclosure vulnerability

Azure Data Factory Information Disclosure vulnerability (CVE-2026-66800) was added to Microsoft’s security update guidance. <p>Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.