Security Briefs
Page 72 of 165.
Alerts tracked
3939
Security flaws we track for Upstate SC businesses.
Known exploited
545
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
2
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 7, 2026, 6:01 AM UTC.
Showing page 72 (24 alerts) of 3939.
Windows Remote Desktop Client Information Disclosure vulnerability
Windows Remote Desktop Client Information Disclosure vulnerability (CVE-2026-61918) was added to Microsoft’s security update guidance. Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Windows Hyper-V Information Disclosure vulnerability
Windows Hyper-V Information Disclosure vulnerability (CVE-2026-61368) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Services Elevation of Privilege vulnerability
Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-61367) was added to Microsoft’s security update guidance. Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Network Connection Broker Elevation of Privilege vulnerability
Windows Network Connection Broker Elevation of Privilege vulnerability (CVE-2026-61366) was added to Microsoft’s security update guidance. Double free in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Services Elevation of Privilege vulnerability
Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-61365) was added to Microsoft’s security update guidance. Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Services Elevation of Privilege vulnerability
Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-61364) was added to Microsoft’s security update guidance. Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows DHCP Client Remote Code Execution vulnerability
Windows DHCP Client Remote Code Execution vulnerability (CVE-2026-61361) was added to Microsoft’s security update guidance. Use after free in Windows DHCP Client allows an authorized attacker to execute code locally. If you need help checking exposure, call (864) 335-9223.
Windows GDI Information Disclosure vulnerability
Windows GDI Information Disclosure vulnerability (CVE-2026-61360) was added to Microsoft’s security update guidance. Untrusted pointer dereference in Windows GDI allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Storage Elevation of Privilege vulnerability
Windows Storage Elevation of Privilege vulnerability (CVE-2026-61359) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege vulnerability
Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege vulnerability (CVE-2026-61358) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Services Elevation of Privilege vulnerability
Windows Remote Desktop Services Elevation of Privilege vulnerability (CVE-2026-61356) was added to Microsoft’s security update guidance. Missing authentication for critical function in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Sensor Data Service Elevation of Privilege vulnerability
Windows Sensor Data Service Elevation of Privilege vulnerability (CVE-2026-61355) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Sensor Data Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Telephony Service Elevation of Privilege vulnerability
Windows Telephony Service Elevation of Privilege vulnerability (CVE-2026-61353) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows NTFS Information Disclosure vulnerability
Windows NTFS Information Disclosure vulnerability (CVE-2026-61350) was added to Microsoft’s security update guidance. Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack. If you need help checking exposure, call (864) 335-9223.
Windows Work Folder Service Elevation of Privilege vulnerability
Windows Work Folder Service Elevation of Privilege vulnerability (CVE-2026-61349) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-61348) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Event Logging Service Information Disclosure vulnerability
Windows Event Logging Service Information Disclosure vulnerability (CVE-2026-61347) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Windows Graphics Kernel Elevation of Privilege vulnerability
Windows Graphics Kernel Elevation of Privilege vulnerability (CVE-2026-61346) was added to Microsoft’s security update guidance. Acknowledgement Updated If you need help checking exposure, call (864) 335-9223.
Microsoft Remote Registry Service Denial of Service vulnerability
Microsoft Remote Registry Service Denial of Service vulnerability (CVE-2026-61345) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.
Microsoft Remote Registry Service Denial of Service vulnerability
Microsoft Remote Registry Service Denial of Service vulnerability (CVE-2026-59138) was added to Microsoft’s security update guidance. Information published. If you need help checking exposure, call (864) 335-9223.
Windows Event Logging Service Information Disclosure vulnerability
Windows Event Logging Service Information Disclosure vulnerability (CVE-2026-59137) was added to Microsoft’s security update guidance. Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Microsoft COM for Windows Information Disclosure vulnerability
Microsoft COM for Windows Information Disclosure vulnerability (CVE-2026-59136) was added to Microsoft’s security update guidance. Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Microsoft Windows Search Component Information Disclosure vulnerability
Microsoft Windows Search Component Information Disclosure vulnerability (CVE-2026-59135) was added to Microsoft’s security update guidance. Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Microsoft High Performance Computing (HPC) Pack Elevation of Privilege vulnerability
Microsoft High Performance Computing (HPC) Pack Elevation of Privilege vulnerability (CVE-2026-59133) was added to Microsoft’s security update guidance. Execution with unnecessary privileges in Microsoft High Performance Computing (HPC) Pack allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.