Security Briefs
Page 67 of 165.
Alerts tracked
3939
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 7, 2026, 6:01 AM UTC.
Showing page 67 (24 alerts) of 3939.
Windows User Profile Service Elevation of Privilege vulnerability
Windows User Profile Service Elevation of Privilege vulnerability (CVE-2026-62832) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-62829) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Elevation of Privilege vulnerability
Microsoft SharePoint Server Elevation of Privilege vulnerability (CVE-2026-62827) was added to Microsoft’s security update guidance. Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Remote Code Execution vulnerability
Windows DHCP Server Remote Code Execution vulnerability (CVE-2026-62823) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows GDI+ Remote Code Execution vulnerability
Windows GDI+ Remote Code Execution vulnerability (CVE-2026-62822) was added to Microsoft’s security update guidance. Integer overflow or wraparound in Windows GDI+ allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows DNS Server Remote Code Execution vulnerability
Windows DNS Server Remote Code Execution vulnerability (CVE-2026-62820) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Routing and Remote Access Service (RRAS) Remote Code Execution vulnerability
Windows Routing and Remote Access Service (RRAS) Remote Code Execution vulnerability (CVE-2026-62819) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Active Directory Certificate Services (AD CS) Remote Code Execution vulnerability
Windows Active Directory Certificate Services (AD CS) Remote Code Execution vulnerability (CVE-2026-62818) was added to Microsoft’s security update guidance. Use after free in Active Directory Certificate Services (AD CS) allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows DNS Server Remote Code Execution vulnerability
Windows DNS Server Remote Code Execution vulnerability (CVE-2026-62817) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability
Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution vulnerability (CVE-2026-62816) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Reliable Multicast Transport Driver (RMCAST) allows an unauthorized attacker to execute code over an adjacent network. If you need help checking exposure, call (864) 335-9223.
Microsoft QUIC Remote Code Execution vulnerability
Microsoft QUIC Remote Code Execution vulnerability (CVE-2026-62815) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Information Disclosure vulnerability
Windows DHCP Server Information Disclosure vulnerability (CVE-2026-62814) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Elevation of Privilege vulnerability
Windows DHCP Server Elevation of Privilege vulnerability (CVE-2026-62812) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows HTTP.sys Elevation of Privilege vulnerability
Windows HTTP.sys Elevation of Privilege vulnerability (CVE-2026-62811) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Elevation of Privilege vulnerability
Windows DHCP Server Elevation of Privilege vulnerability (CVE-2026-62807) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Server Elevation of Privilege vulnerability
Windows DHCP Server Elevation of Privilege vulnerability (CVE-2026-62803) was added to Microsoft’s security update guidance. Updated software table to remove clients versions because this vulnerability only impacts Windows Servers. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows SMBv3 Server Remote Code Execution vulnerability
Windows SMBv3 Server Remote Code Execution vulnerability (CVE-2026-62800) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows SMB Client Elevation of Privilege vulnerability
Windows SMB Client Elevation of Privilege vulnerability (CVE-2026-62799) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Elevation of Privilege vulnerability
Windows NTFS Elevation of Privilege vulnerability (CVE-2026-62797) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Information Disclosure vulnerability
Windows NTFS Information Disclosure vulnerability (CVE-2026-62796) was added to Microsoft’s security update guidance. Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution vulnerability
Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution vulnerability (CVE-2026-62795) was added to Microsoft’s security update guidance. Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Information Disclosure vulnerability
Windows NTFS Information Disclosure vulnerability (CVE-2026-62793) was added to Microsoft’s security update guidance. Buffer over-read in Windows NTFS allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows TCP/IP Remote Code Execution vulnerability
Windows TCP/IP Remote Code Execution vulnerability (CVE-2026-62792) was added to Microsoft’s security update guidance. Stack-based buffer overflow in Windows TCP/IP allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows SMBv3 Server Remote Code Execution vulnerability
Windows SMBv3 Server Remote Code Execution vulnerability (CVE-2026-62790) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows SMB Server allows an authorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.