Windows DHCP Client Remote Code Execution Vulnerability
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5121000.
Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.
Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.
Use after free in Windows DHCP Client allows an authorized attacker to execute code locally.
Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5121000.
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Null pointer dereference in Microsoft Remote Registry Service allows an authorized attacker to deny service over a network.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Weak authentication in Microsoft Windows Search Component allows an authorized attacker to disclose information locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Out-of-bounds read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
CVE-2026-6727 is an Information Disclosure vulnerability in the TPM 2.0 reference implementation involving an RSA OAEP timing side channel. MITRE assigned this CVE on behalf of the Trusted Computing Group. This document incorporates updates to Microsoft Windows that address th...
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5123303. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install ...
Improper neutralization of special elements used in a command ('command injection') in Azure Monitor Agent allows an authorized attacker to elevate privileges over a network.
Release Notes
Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows an unauthorized attacker to execute code over a network.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Allocation of resources without limits or throttling in Windows Kernel allows an unauthorized attacker to deny service over a network.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
Missing authorization in Dynamics Business Central allows an authorized attacker to disclose information over a network.
Install KB5100263. Install KB5100266. Install KB5100265.
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
Install KB5002905. Install KB5002906. Install KB5002894. Install KB5002896. Install KB5002893.
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Install KB5002905. Install KB5002906. Install KB5002894. Install KB5002896. Install KB5002893.
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
Install KB5002905. Install KB5002906. Install KB5002894. Install KB5002896. Install KB5002893.
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
Install KB5002905. Install KB5002906. Install KB5002894. Install KB5002896. Install KB5002893.
Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.
Install KB5002905. Install KB5002906. Install KB5002894. Install KB5002896. Install KB5002893.
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Install KB5002894. Install KB5002896. Install KB5002893.
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Install KB5002894. Install KB5002896. Install KB5002893.
Untrusted search path in Windows Narrator Braille allows an authorized attacker to elevate privileges locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5120240.
Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.
Install KB5120238. Install KB5120242. Install KB5120229. Install KB5120249. Install KB5120233. Install KB5120228. Install KB5121003. Install KB5120994. Install KB5120240. Install KB5121000. Install KB5120418. Install ...
We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.
Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.
Read how SecurityAlert collects and checks threat intelligence.