PatchSiren

Microsoft CVE debriefs · Page 59

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20874

CVE-2026-20874 is a race condition vulnerability in Windows Management Services, allowing an authorized attacker to elevate privileges locally. This vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. Affected products include various versions of Windows 10, Windows 11, and Windows Server. System administrators and security teams should be aware of this vulnerability and take steps t [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20872

CVE-2026-20872 is a MEDIUM-severity vulnerability in Windows NTLM that allows an unauthorized attacker to perform spoofing over a network. The vulnerability has a CVSS score of 6.5 and affects multiple versions of Windows 10, Windows 11, and Windows Server. Microsoft has released patches for affected versions. The vulnerability is related to external control of file name or path, which can lead to spoofin [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20871

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:16.810Z and has not been modified since then. The CVE-2026-20871 vulnerability is a use-after-free issue in the Desktop Windows Manager that allows an authorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and affects various versions of Windows 10, Win [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20870

CVE-2026-20870 is a use-after-free vulnerability in the Windows Win32K - ICOMP component. This vulnerability can be exploited by an authorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. Affected products include Windows 11 24H2, Windows 11 25H2, and Windows Server 2025. System administrators and security teams should be aware of th [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20869

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record for CVE-2026-20869 was published on 2026-01-13T18:16:16.480Z. This vulnerability, a race condition in the Windows Local Session Manager (LSM), allows an authorized attacker to elevate privileges locally. It has been rated HIGH with a CVSS score of 7. Multiple versions of Windows and Windows Server are affected. The vulnerab [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20868

A heap-based buffer overflow vulnerability exists in Windows Routing and Remote Access Service (RRAS). An unauthorized attacker can exploit this vulnerability to execute code over a network. The vulnerability affects multiple versions of Windows 10, Windows 11, and Windows Server, as listed in the CPE criteria. This vulnerability allows for remote code execution, which can lead to significant impact if ex [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20867

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:16.130Z and has not been modified since then. CVE-2026-20867 is a race condition vulnerability in Windows Management Services that allows an authorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. Affected products inc [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20866

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:15.967Z and has not been modified since then. CVE-2026-20866 is a race condition vulnerability in Windows Management Services that allows an authorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. Affected products inc [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20865

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:15.797Z and has not been modified since then. The CVE-2026-20865 vulnerability is a use-after-free issue in Windows Management Services that can be exploited by an authorized attacker to elevate privileges locally. This vulnerability affects various versions of Windows 10, Windows 11, and W [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20864

A heap-based buffer overflow vulnerability exists in the Connected Devices Platform Service (Cdpsvc) on multiple Windows operating systems. The flaw allows an authorized attacker with local access to elevate privileges to SYSTEM level. The vulnerability was disclosed by Microsoft on January 13, 2026, with the NVD record subsequently modified on May 26, 2026. Microsoft has released security updates address [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20863

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:15.467Z and has not been modified since then. CVE-2026-20863 is a double free vulnerability in the Windows Win32K - ICOMP component. This vulnerability can be exploited by an authorized attacker to elevate privileges locally. The vulnerability has been assigned a CVSS score of 7 and is cons [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20862

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:15.300Z and has not been modified since then. CVE-2026-20862 is a medium-severity vulnerability in Windows Management Services that allows an authorized attacker to disclose information locally. The vulnerability has a CVSS score of 5.5 and is classified under CWE-200. Affected products inc [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20860

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:14.970Z and has not been modified since then. CVE-2026-20860 is a type confusion vulnerability in the Windows Ancillary Function Driver for WinSock. An authorized attacker could exploit this vulnerability to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and is consid [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20859

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:14.810Z and has not been modified since then. The CVE-2026-20859 vulnerability is a use-after-free issue in Windows Kernel-Mode Drivers. This type of vulnerability occurs when a program continues to use a pointer after the memory it points to has been freed or reused. An authorized attacker [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20858

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:14.647Z and has not been modified since then. The CVE-2026-20858 vulnerability is a use-after-free issue in Windows Management Services that could allow an authorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.8 and is classified as HIGH severity. Affect [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20857

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:14.480Z and has not been modified since then. The vulnerability CVE-2026-20857 is an untrusted pointer dereference in the Windows Cloud Files Mini Filter Driver. This issue allows an authorized attacker to elevate privileges locally. The Common Vulnerability Scoring System (CVSS) score is 7 [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20856

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:14.313Z and has not been modified since then. The vulnerability CVE-2026-20856 is caused by improper input validation in Windows Server Update Service, allowing an unauthorized attacker to execute code over a network. This issue affects multiple versions of Windows 10, Windows 11, and Windo [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20854

CVE-2026-20854 is a use-after-free vulnerability in Windows Local Security Authority Subsystem Service (LSASS), allowing an authorized attacker to execute code over a network. The vulnerability affects Windows 11 24H2, 25H2, and Server 2025. Based on evidence from NVD and Microsoft, affected versions require verification. To address this vulnerability, it is crucial to prioritize patching for the mentione [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20853

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:13.990Z and has not been modified since then. CVE-2026-20853 is a race condition vulnerability in the Windows WalletService that allows an unauthorized attacker to elevate privileges locally. The vulnerability has a CVSS score of 7.4 and is classified as HIGH severity. Affected versions inc [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20852

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:13.827Z and has not been modified since then. The vulnerability CVE-2026-20852 is related to incorrect privilege assignment in Windows Hello, which allows an unauthorized attacker to perform tampering locally. The CVSS score is 7.7, indicating a high severity. The vulnerability affects mult [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20851

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:13.650Z and has not been modified since then. The Capability Access Management Service (camsvc) is vulnerable to an out-of-bounds read, potentially allowing unauthorized local information disclosure. Affected configurations include certain versions of Microsoft Windows 11 and Windows Server [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20849

The CVE-2026-20849 vulnerability exists in the Windows Kerberos implementation, allowing an authorized attacker to elevate privileges over a network. This is a high-severity vulnerability with a CVSS score of 7.5. Organizations should review their Kerberos configurations and prioritize patching, especially in high-risk networks or those with sensitive data. The vulnerability is caused by reliance on untru [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20848

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:13.310Z and has not been modified since then. CVE-2026-20848 is a high-severity vulnerability in Windows SMB Server caused by a race condition. This vulnerability allows an authorized attacker to elevate privileges over a network. The CVSS score is 7.5, indicating a high level of severity. [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20847

The CVE-2026-20847 vulnerability involves the exposure of sensitive information to an unauthorized actor in Windows Shell, allowing an authorized attacker to perform spoofing over a network. This issue affects various versions of Windows 10, Windows 11, and Windows Server. Organizations should review the CVE record and vendor advisory for specific details on affected versions and mitigation strategies. Th [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20844

The CVE-2026-20844 vulnerability is a use-after-free issue in the Windows Clipboard Server, which could allow an unauthorized attacker to elevate privileges locally. This vulnerability affects various versions of Windows 10, Windows 11, and Windows Server. The CVE record was published on 2026-01-13T18:16:12.977Z and has not been modified since then. Administrators and users of affected Windows systems sho [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20843

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:12.810Z and has not been modified since then. CVE-2026-20843 is a HIGH-rated vulnerability (CVSS score of 7.8) affecting Windows Routing and Remote Access Service (RRAS). The vulnerability allows an authorized attacker to elevate privileges locally due to improper access control. Affected v [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20842

CVE-2026-20842 is a use-after-free vulnerability in the Windows Desktop Window Manager (DWM). An authorized attacker can exploit this vulnerability locally to elevate privileges. The vulnerability affects multiple versions of Windows 10, Windows 11, and Windows Server. Microsoft has released a vendor advisory with mitigation details. System administrators and security teams responsible for Windows systems [truncated]

HIGH Microsoft CVE published 2026-01-13

CVE-2026-20840

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:12.490Z and has not been modified since then. The NVD entry is currently Analyzed. This vulnerability, CVE-2026-20840, is a heap-based buffer overflow in Windows NTFS, allowing an authorized attacker to execute code locally. It has a CVSS score of 7.8 and is classified as HIGH severity. The [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20839

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record for CVE-2026-20839 was published on 2026-01-13T18:16:12.320Z and has not been modified since then. CVE-2026-20839 is a medium-severity vulnerability in Windows Client-Side Caching (CSC) Service due to improper access control. An authorized attacker can exploit this vulnerability to disclose information locally. The vulnerab [truncated]

MEDIUM Microsoft CVE published 2026-01-13

CVE-2026-20838

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-01-13T18:16:12.153Z and has not been modified since then. CVE-2026-20838 is a medium-severity vulnerability in the Windows Kernel, allowing an authorized attacker to disclose information locally. The vulnerability is caused by the generation of error messages containing sensitive information. Affected [truncated]