Security Briefs
Page 75 of 111.
Alerts tracked
2651
Security flaws we track for Upstate SC businesses.
Known exploited
504
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
60
Fresh additions to that CISA list since the first of the month.Feeds last synced Aug 23, 2026, 6:00 AM UTC.
Showing page 75 (24 alerts) of 2651.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-45601) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Kernel-Mode Driver Elevation of Privilege vulnerability
Windows Kernel-Mode Driver Elevation of Privilege vulnerability (CVE-2026-45600) was added to Microsoft’s security update guidance. Access of resource using incompatible type ('type confusion') in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows UPnP Device Host Remote Code Execution vulnerability
Windows UPnP Device Host Remote Code Execution vulnerability (CVE-2026-45599) was added to Microsoft’s security update guidance. Use after free in Universal Plug and Play (upnp.dll) allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-45598) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-45596) was added to Microsoft’s security update guidance. Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows Mark of the Web Security Feature Bypass vulnerability
Windows Mark of the Web Security Feature Bypass vulnerability (CVE-2026-45595) was added to Microsoft’s security update guidance. Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature over a network. If you need help checking exposure, call (864) 335-9223.
Windows Application Identity (AppID) Information Disclosure vulnerability
Windows Application Identity (AppID) Information Disclosure vulnerability (CVE-2026-45594) was added to Microsoft’s security update guidance. Exposure of sensitive information to an unauthorized actor in Windows Application Identity (AppID) Subsystem allows an authorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.
Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege vulnerability
Windows Collaborative Translation Framework (CTFMON) Elevation of Privilege vulnerability (CVE-2026-45586) was added to Microsoft’s security update guidance. Improper link resolution before file access ('link following') in Windows Collaborative Translation Framework allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Windows BitLocker Security Feature Bypass vulnerability
Windows BitLocker Security Feature Bypass vulnerability (CVE-2026-45585) was added to Microsoft’s security update guidance. Updated product information in the Software Update table. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Remote Code Execution vulnerability
Microsoft Exchange Server Remote Code Execution vulnerability (CVE-2026-45583) was added to Microsoft’s security update guidance. Improper control of generation of code ('code injection') in Microsoft Exchange Server allows an unauthorized attacker to execute code over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Information Disclosure vulnerability
Microsoft Exchange Server Information Disclosure vulnerability (CVE-2026-45503) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Information Disclosure vulnerability
Microsoft Exchange Server Information Disclosure vulnerability (CVE-2026-45502) was added to Microsoft’s security update guidance. Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to disclose information over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Spoofing vulnerability
Microsoft Exchange Server Spoofing vulnerability (CVE-2026-45501) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Exchange Server Spoofing vulnerability
Microsoft Exchange Server Spoofing vulnerability (CVE-2026-45500) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Windows Program Compatibility Assistant Service Elevation of Privilege vulnerability
Windows Program Compatibility Assistant Service Elevation of Privilege vulnerability (CVE-2026-45487) was added to Microsoft’s security update guidance. Time-of-check time-of-use (TOCTOU) race condition in Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Elevation of Privilege vulnerability
Microsoft SharePoint Elevation of Privilege vulnerability (CVE-2026-45484) was added to Microsoft’s security update guidance. Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Office Project Server Spoofing vulnerability
Microsoft Office Project Server Spoofing vulnerability (CVE-2026-45483) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office Project Server allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45481) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45479) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft Azure Network Adapter Elevation of Privilege vulnerability
Microsoft Azure Network Adapter Elevation of Privilege vulnerability (CVE-2026-45476) was added to Microsoft’s security update guidance. Use after free in Linux MANA Driver allows an authorized attacker to elevate privileges locally. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45468) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45467) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45465) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.
Microsoft SharePoint Server Spoofing vulnerability
Microsoft SharePoint Server Spoofing vulnerability (CVE-2026-45464) was added to Microsoft’s security update guidance. Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. If you need help checking exposure, call (864) 335-9223.