漏洞列表 13787
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-25167
Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privile
HIGH 7.4 2026-03-10
microsoft windows_11_24h2 microsoft windows_11_25h2 +2个
NVD
CVE-2026-25166
Deserialization of untrusted data in Windows System Image Manager allows an authorized attacker to e
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +10个
NVD
CVE-2026-25165
Null pointer dereference in Windows Performance Counters allows an authorized attacker to elevate pr
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-24297
Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
MEDIUM 6.5 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +6个
NVD
CVE-2026-24296
Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
HIGH 7.0 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +12个
NVD
CVE-2026-24295
Concurrent execution using shared resource with improper synchronization ('race condition') in Windo
HIGH 7.0 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +11个
NVD
CVE-2026-24294
Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges lo
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-24293
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attac
HIGH 7.8 2026-03-10
microsoft windows_10_21h2 microsoft windows_10_22h2 +7个
NVD
CVE-2026-24292
Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to eleva
HIGH 7.8 2026-03-10
microsoft windows_10_1809 microsoft windows_10_21h2 +9个
NVD
CVE-2026-24291
Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBro
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-24290
Improper access control in Windows Projected File System allows an authorized attacker to elevate pr
HIGH 7.8 2026-03-10
microsoft windows_10_1809 microsoft windows_10_21h2 +9个
NVD
CVE-2026-24289
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-24288
Heap-based buffer overflow in Windows Mobile Broadband allows an unauthorized attacker to execute co
MEDIUM 6.8 2026-03-10
microsoft windows_10_21h2 microsoft windows_10_22h2
NVD
CVE-2026-24287
External control of file name or path in Windows Kernel allows an authorized attacker to elevate pri
HIGH 7.8 2026-03-10
microsoft windows_10_1809 microsoft windows_10_21h2 +9个
NVD
CVE-2026-24285
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
HIGH 7.0 2026-03-10
microsoft office microsoft windows_10_1607 +13个
NVD
CVE-2026-24283
Heap-based buffer overflow in Windows File Server allows an authorized attacker to elevate privilege
HIGH 8.8 2026-03-10
microsoft windows_11_24h2 microsoft windows_11_25h2 +3个
NVD
CVE-2026-24282
Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose informa
MEDIUM 5.5 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +6个
NVD
CVE-2026-23674
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to b
HIGH 7.5 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-23673
Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-23672
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD