Security Briefs
Page 65 of 141.
Alerts tracked
3939
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 7, 2026, 6:01 AM UTC.
Showing page 65 (24 alerts) of 3384.
Windows DNS Elevation of Privilege vulnerability
Windows DNS Elevation of Privilege vulnerability (CVE-2026-62883) was added to Microsoft’s security update guidance. Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Outlook Spoofing vulnerability
Microsoft Outlook Spoofing vulnerability (CVE-2026-62882) was added to Microsoft’s security update guidance. Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Windows DNS Elevation of Privilege vulnerability
Windows DNS Elevation of Privilege vulnerability (CVE-2026-62881) was added to Microsoft’s security update guidance. Numeric truncation error in Windows DNS allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Elevation of Privilege vulnerability
Windows NTFS Elevation of Privilege vulnerability (CVE-2026-62880) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows DNS Server Remote Code Execution vulnerability
Windows DNS Server Remote Code Execution vulnerability (CVE-2026-62878) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-62877) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Win32k Elevation of Privilege vulnerability
Windows Win32k Elevation of Privilege vulnerability (CVE-2026-62876) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows Win32K allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Office Graphics Component Information Disclosure vulnerability
Microsoft Office Graphics Component Information Disclosure vulnerability (CVE-2026-62842) was added to Microsoft’s security update guidance. Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-62839) was added to Microsoft’s security update guidance. Insufficiently protected credentials in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Information Disclosure vulnerability
Microsoft SharePoint Server Information Disclosure vulnerability (CVE-2026-62837) was added to Microsoft’s security update guidance. Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows User Profile Service Elevation of Privilege vulnerability
Windows User Profile Service Elevation of Privilege vulnerability (CVE-2026-62832) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-62829) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Elevation of Privilege vulnerability
Microsoft SharePoint Server Elevation of Privilege vulnerability (CVE-2026-62827) was added to Microsoft’s security update guidance. Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Remote Code Execution vulnerability
Windows DHCP Server Remote Code Execution vulnerability (CVE-2026-62823) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows GDI+ Remote Code Execution vulnerability
Windows GDI+ Remote Code Execution vulnerability (CVE-2026-62822) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows DNS Server Remote Code Execution vulnerability
Windows DNS Server Remote Code Execution vulnerability (CVE-2026-62820) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Routing and Remote Access Service (RRAS) Remote Code Execution vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution vulnerability (CVE-2026-62819) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Certificate Services (AD CS) Remote Code Execution vulnerability
Windows Active Directory Certificate Services (AD CS) Remote Code Execution vulnerability (CVE-2026-62818) was added to Microsoft’s security update guidance. Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows DNS Server Remote Code Execution vulnerability
Windows DNS Server Remote Code Execution vulnerability (CVE-2026-62817) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability (CVE-2026-62816) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network. If you need help checking exposure, call (864) 335-9223.
Microsoft QUIC Remote Code Execution vulnerability
Microsoft QUIC Remote Code Execution vulnerability (CVE-2026-62815) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Information Disclosure vulnerability
Windows DHCP Server Information Disclosure vulnerability (CVE-2026-62814) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Elevation of Privilege vulnerability
Windows DHCP Server Elevation of Privilege vulnerability (CVE-2026-62812) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows HTTP.sys Elevation of Privilege vulnerability
Windows HTTP.sys Elevation of Privilege vulnerability (CVE-2026-62811) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.