CVE-2026-69458 — Out: Out-of-bounds read in Windows BitLocker allows an authorized attacker to elevate privileges over a
Out-of-bounds read in Windows BitLocker allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Out-of-bounds read in Windows BitLocker allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Heap-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to elevate privileges over a network. CVSSv3.1 8.8 (HIGH)
Incorrect conversion between numeric types in Microsoft JScript allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.1 (HIGH)
Heap-based buffer overflow in Windows URL Moniker allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Heap-based buffer overflow in Telnet Client allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)
Out-of-bounds read in Windows VOLSNAP.SYS allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Windows USB Video Driver allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Volume Manager Driver allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Stack-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over an adjacent network. CVSSv3.1 8.0 (HIGH)
Integer overflow or wraparound in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)
Heap-based buffer overflow in Microsoft Windows Media Foundation allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Missing authorization in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.1 (HIGH)
Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Out-of-bounds read in Microsoft Local Security Authority Server (lsasrv) allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Exchange Server allows an unauthorized attacker to perform spoofing over a network. CVSSv3.1 9.3 (CRITICAL)
External control of file name or path in Microsoft Exchange Server allows an authorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Heap-based buffer overflow in Windows Print Spooler Components allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Microsoft JScript allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.1 (HIGH)
Double free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Stack-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.0 (HIGH)
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an unauthorized attacker to execute code over a network. CVSSv3.1 8.8 (HIGH)