Анализ обновлений Microsoft Patch Tuesday – Август 2026
Краткое Резюме
Во вторник, 11.08.2026, Microsoft выпустила ежемесячный патч безопасности, устраняющий 419 уязвимостей в своих продуктах.
По уровню опасности:
- Important - 356;
- Critical - 62;
- Moderate - 1.
Эксплуатируемые (Zero-Days) и Публично Раскрытые Уязвимости
Особое внимание следует уделить на следующие 3 уязвимости. Их исправление является наивысшим приоритетом:
- CVE-2026-68820 (CVSS 7.0; Important) - Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability (Elevation of Privilege).
- CVE-2026-72971 (CVSS 5.5; Important) - Windows Container Isolation FS Filter Driver (unionfs.sys) Tampering Vulnerability (Tampering).
- CVE-2026-62832 (CVSS 7.8; Important) - Windows User Profile Service Elevation of Privilege Vulnerability (Elevation of Privilege).
Общие тенденции
Августовский Patch Tuesday 2026 года подтверждает, что аномальная нагрузка на ИТ-отделы, начавшаяся в июле, не была разовой акцией. Microsoft выпустила исправления для 419 уязвимостей, сохранив количество критических угроз на стабильно высоком уровне (62 Critical). Этот непрекращающийся «шторм обновлений» свидетельствует о глубокой переработке кодовой базы и требует от организаций максимальной выносливости в процессах патч-менеджмента. Ключевые тенденции августа:
- Активная эксплуатация ядра и публичные раскрытия: В этом месяце зафиксирована активная эксплуатация (Zero-Day) уязвимости повышения привилегий в драйвере AFD.sys (CVE-2026-68820). Этот драйвер (Ancillary Function Driver for WinSock) исторически является излюбленной мишенью хакеров для захвата системы после первичного проникновения. Кроме того, публично раскрыты детали уязвимостей в службе профилей пользователей и драйвере изоляции контейнеров, что делает появление эксплойтов для них вопросом ближайших дней.
- Максимальная угроза (CVSS 10.0) для облаков и коммуникаций: Август выделяется наличием сразу трех уязвимостей с максимально возможным рейтингом CVSS 10.0. Под ударом оказались Azure SQL Database, Microsoft Teams и Microsoft Planetary Computer Pro. В сочетании с критическими брешами (CVSS 9.9) в Azure Service Bus и Entra Provisioning Service, это указывает на то, что облачная и гибридная инфраструктура подвергается критическому риску полного захвата.
- Сетевой фундамент под массированным ударом (RCE): Закрыт целый пласт критических уязвимостей удаленного выполнения кода в базовых сетевых компонентах, без которых невозможна работа ни одной корпоративной сети. Исправления затронули Windows DNS Server, DHCP Server, SMBv3, RPC Runtime Library и Windows Deployment Services (WDS). Эксплуатация таких брешей классически используется для создания сетевых «червей» и массового заражения серверов без аутентификации.
- Непрекращающийся кризис Office и SharePoint: В списке исправлений вновь фигурируют десятки уязвимостей RCE для Microsoft Excel, Word, Office и SharePoint Server. Очевидно, что злоумышленники продолжают активно искать и находить способы обхода песочниц и защитных механизмов в документах, что делает фишинг самым актуальным вектором начального доступа.
- Массовое повышение привилегий (EoP): Более 200 исправлений направлены на устранение локального повышения привилегий. Уязвимы практически все уровни системы: Win32k, ядро, DWM, установщик Windows (Installer), службы телеметрии и виртуализации.
Полный Список Уязвимостей
Ниже представлена таблица со всеми уязвимостями, исправленными в этом месяце.
| CVE | Title | Type | CVSS | Severity | Эксплуатируется | Публично Раскрыта |
|---|---|---|---|---|---|---|
| CVE-2026-68820 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Да | Нет |
| CVE-2026-72971 | Windows Container Isolation FS Filter Driver (unionfs.sys) Tampering Vulnerability | Tampering | 5.5 | Important | Нет | Да |
| CVE-2026-62832 | Windows User Profile Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Да |
| CVE-2026-63508 | Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability | Elevation of Privilege | 10.0 | Critical | Нет | Нет |
| CVE-2026-56162 | Azure SQL Database Elevation of Privilege Vulnerability | Elevation of Privilege | 10.0 | Critical | Нет | Нет |
| CVE-2026-65667 | Microsoft Teams Elevation of Privilege Vulnerability | Elevation of Privilege | 10.0 | Critical | Нет | Нет |
| CVE-2026-50515 | Azure Service Bus Remote Code Execution Vulnerability | Remote Code Execution | 9.9 | Critical | Нет | Нет |
| CVE-2026-59115 | Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability | Elevation of Privilege | 9.9 | Critical | Нет | Нет |
| CVE-2026-50481 | Azure Active Directory Elevation of Privilege Vulnerability | Elevation of Privilege | 9.9 | Critical | Нет | Нет |
| CVE-2026-62830 | Azure SRE Agent Elevation of Privilege Vulnerability | Elevation of Privilege | 9.9 | Critical | Нет | Нет |
| CVE-2026-62873 | Microsoft 365 Admin Center Elevation of Privilege Vulnerability | Elevation of Privilege | 9.8 | Critical | Нет | Нет |
| CVE-2026-59124 | Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability | Remote Code Execution | 9.8 | Important | Нет | Нет |
| CVE-2026-62815 | Microsoft QUIC Remote Code Execution Vulnerability | Remote Code Execution | 9.8 | Critical | Нет | Нет |
| CVE-2026-62878 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 9.8 | Critical | Нет | Нет |
| CVE-2026-62893 | Windows Deployment Services TFTP Server Remote Code Execution Vulnerability | Remote Code Execution | 9.8 | Critical | Нет | Нет |
| CVE-2026-65791 | Windows iSCSI Target Service Remote Code Execution Vulnerability | Remote Code Execution | 9.8 | Critical | Нет | Нет |
| CVE-2026-62896 | Microsoft Teams Elevation of Privilege Vulnerability | Elevation of Privilege | 9.6 | Critical | Нет | Нет |
| CVE-2026-70332 | Microsoft Office SharePoint Spoofing Vulnerability | Spoofing | 9.6 | Critical | Нет | Нет |
| CVE-2026-56161 | Azure Logic Apps Information Disclosure Vulnerability | Information Disclosure | 9.6 | Critical | Нет | Нет |
| CVE-2026-50516 | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability | Elevation of Privilege | 9.4 | Critical | Нет | Нет |
| CVE-2026-70306 | Microsoft Office SharePoint Spoofing Vulnerability | Spoofing | 9.3 | Important | Нет | Нет |
| CVE-2026-59118 | Copilot Cowork Elevation of Privilege Vulnerability | Elevation of Privilege | 9.3 | Critical | Нет | Нет |
| CVE-2026-68823 | Azure Confidential Ledger Remote Code Execution Vulnerability | Remote Code Execution | 9.1 | Critical | Нет | Нет |
| CVE-2026-65768 | Microsoft Teams Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62827 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical | Нет | Нет |
| CVE-2026-63514 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65668 | Microsoft Purview eDiscovery Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical | Нет | Нет |
| CVE-2026-49179 | Windows Active Directory Domain Services Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-59113 | Visual Studio Code Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-59133 | Microsoft High Performance Computing (HPC) Pack Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important | Нет | Нет |
| CVE-2026-62785 | Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62784 | Microsoft Local Security Authority Server (lsasrv) Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62795 | Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62816 | Windows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62817 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62818 | Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62913 | Microsoft Exchange Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65658 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65663 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65665 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-65807 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65811 | Power BI Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65815 | Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-69320 | Visual Studio Code Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-70321 | Microsoft SharePoint Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-70324 | Microsoft SharePoint Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important | Нет | Нет |
| CVE-2026-70329 | Microsoft Outlook Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-70336 | Visual Studio Code Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-57104 | Azure Storage Explorer Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important | Нет | Нет |
| CVE-2026-62800 | Windows SMBv3 Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62790 | Windows SMBv3 Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-62823 | Windows DHCP Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62824 | Remote Desktop Client Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62822 | Windows GDI+ Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Critical | Нет | Нет |
| CVE-2026-62872 | .NET Framework Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important | Нет | Нет |
| CVE-2026-64901 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-64921 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical | Нет | Нет |
| CVE-2026-66805 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-66808 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-70326 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Important | Нет | Нет |
| CVE-2026-70337 | Microsoft PowerShell Remote Code Execution Vulnerability | Remote Code Execution | 8.8 | Important | Нет | Нет |
| CVE-2026-65767 | Microsoft Teams for Android and iOS Spoofing Vulnerability | Spoofing | 8.8 | Important | Нет | Нет |
| CVE-2026-49163 | Application Insights Profiler Elevation of Privilege Vulnerability | Elevation of Privilege | 8.8 | Critical | Нет | Нет |
| CVE-2026-62869 | Azure Entra ID Spoofing Vulnerability | Spoofing | 8.8 | Critical | Нет | Нет |
| CVE-2026-62836 | Azure SQL Managed Instance Elevation of Privilege Vulnerability | Elevation of Privilege | 8.7 | Critical | Нет | Нет |
| CVE-2026-70130 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 8.4 | Critical | Нет | Нет |
| CVE-2026-56179 | Windows Network Address Translation (NAT) Spoofing Vulnerability | Spoofing | 8.3 | Moderate | Нет | Нет |
| CVE-2026-69306 | Visual Studio Code Security Feature Bypass Vulnerability | Security Feature Bypass | 8.2 | Important | Нет | Нет |
| CVE-2026-63520 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Important | Нет | Нет |
| CVE-2026-62792 | Windows TCP/IP Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Important | Нет | Нет |
| CVE-2026-62819 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-62820 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-62889 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-65789 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-70340 | Azure CycleCloud Elevation of Privilege Vulnerability | Elevation of Privilege | 8.1 | Important | Нет | Нет |
| CVE-2026-62778 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 8.1 | Important | Нет | Нет |
| CVE-2026-62781 | RPC Runtime Library Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Important | Нет | Нет |
| CVE-2026-65679 | Windows iSCSI Target Service Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Important | Нет | Нет |
| CVE-2026-66802 | Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-71331 | Windows Device Health Attestation (DHA) Remote Code Execution Vulnerability | Remote Code Execution | 8.1 | Critical | Нет | Нет |
| CVE-2026-57105 | Microsoft Office SharePoint Spoofing Vulnerability | Spoofing | 8.0 | Important | Нет | Нет |
| CVE-2026-62911 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Elevation of Privilege | 8.0 | Critical | Нет | Нет |
| CVE-2026-56174 | Windows Narrator Braille Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-58650 | Visual Studio Code Security Feature Bypass Vulnerability | Security Feature Bypass | 7.8 | Important | Нет | Нет |
| CVE-2026-54984 | Windows Imaging Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-59127 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61353 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61356 | Windows Remote Desktop Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61367 | Windows Remote Desktop Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61923 | Windows Display Enhancement Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61925 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61930 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61937 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62692 | Windows Remote Desktop Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61932 | Windows DWM Core Library Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61934 | Windows Bind Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62695 | Windows Storage Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62688 | Windows MIDI Service Module Elevation of Privileges Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62696 | Windows Program Compatibility Assistant Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62707 | Windows Modern Device Management (MDM) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62713 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62712 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62719 | Windows Message Queuing Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62722 | Windows Bind Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62735 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62737 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62739 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62747 | Windows Device Association Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62754 | Windows Kerberos Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62783 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62755 | Windows DHCP Client Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62758 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62772 | Windows Container Isolation FS Filter Driver (unionfs.sys) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62777 | Windows License Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62779 | Windows Schannel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62797 | Windows NTFS Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62812 | Windows DHCP Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62876 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62877 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62890 | Windows GDI+ Elevation of Privilege Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-62894 | Windows DWM Core Library Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62909 | .NET Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-63513 | Microsoft Office Graphics Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63515 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63518 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63519 | Microsoft Office Graphics Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-65657 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-65656 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-65661 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-65664 | Microsoft Office Graphics Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-65671 | Remote Access API Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65672 | Remote Access API Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65786 | Desktop Window Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65787 | Desktop Window Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65814 | Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-66799 | Windows Key Guard Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Critical | Нет | Нет |
| CVE-2026-68792 | Microsoft Office Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-68793 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68794 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-68795 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68796 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68800 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68807 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68806 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68810 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68811 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68815 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68816 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-69278 | Visual Studio Code Security Feature Bypass Vulnerability | Security Feature Bypass | 7.8 | Important | Нет | Нет |
| CVE-2026-70311 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-70313 | Microsoft PowerPoint Remote Code Execution Vulnerability | Information Disclosure | 7.8 | Important | Нет | Нет |
| CVE-2026-70335 | GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-66804 | Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-70344 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-70345 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-70346 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-70347 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-42976 | Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-54981 | Visual Studio Code Python Extension Security Feature Bypass Vulnerability | Security Feature Bypass | 7.8 | Important | Нет | Нет |
| CVE-2026-58641 | .NET Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-58651 | Microsoft Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-61349 | Windows Work Folder Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61359 | Windows Storage Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61355 | Windows Sensor Data Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61364 | Windows Remote Desktop Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61365 | Windows Remote Desktop Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61357 | Application Information Services Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61358 | Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-61926 | Windows USB Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62698 | Microsoft Digest Authentication Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62700 | Windows NTFS Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62701 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62710 | Windows Device Association Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62711 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62717 | Windows Message Queuing Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62721 | Windows User-Mode Power Service (UMPS) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62733 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62732 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62736 | Windows DHCP Client Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62741 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62751 | Windows Projected File System Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62752 | Windows Kerberos Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62771 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62761 | Windows DHCP Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62768 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62770 | Windows Shell Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62799 | Windows SMB Client Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62776 | Windows DHCP Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62803 | Windows DHCP Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62807 | Windows DHCP Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62811 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62871 | .NET Elevation of Privilege Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-62880 | Windows NTFS Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62885 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62886 | .NET Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-62888 | Windows DWM Core Library Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-63525 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63526 | Microsoft Office Graphics Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63527 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-63532 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-63533 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64898 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64903 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64904 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64905 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64907 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64906 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64909 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64910 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64912 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64911 | Microsoft Office Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-64908 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64914 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64915 | Microsoft Office Word Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64920 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-64919 | Microsoft Access Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-65673 | Microsoft Entra Connect Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65773 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65774 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65775 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65790 | Windows Message Queuing Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-65810 | .NET Framework Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Important | Нет | Нет |
| CVE-2026-66807 | Microsoft Office Graphics Component Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-68798 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68801 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68803 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68804 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Critical | Нет | Нет |
| CVE-2026-68805 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68812 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68814 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-68817 | Microsoft Excel Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-70338 | Microsoft PowerShell Security Feature Bypass Vulnerability | Security Feature Bypass | 7.8 | Important | Нет | Нет |
| CVE-2026-63522 | Azure SQL Database Elevation of Privilege Vulnerability | Elevation of Privilege | 7.8 | Critical | Нет | Нет |
| CVE-2026-70354 | .NET Core Remote Code Execution Vulnerability | Remote Code Execution | 7.8 | Important | Нет | Нет |
| CVE-2026-62918 | Microsoft Teams Spoofing Vulnerability | Spoofing | 7.5 | Critical | Нет | Нет |
| CVE-2026-54113 | Remote Procedure Call Denial of Service Vulnerability | Denial of Service | 7.5 | Important | Нет | Нет |
| CVE-2026-59132 | Windows TCP/IP Denial of Service Vulnerability | Denial of Service | 7.5 | Important | Нет | Нет |
| CVE-2026-59134 | Remote Desktop Client Remote Code Execution Vulnerability | Remote Code Execution | 7.5 | Important | Нет | Нет |
| CVE-2026-62787 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 7.5 | Important | Нет | Нет |
| CVE-2026-62901 | .NET Denial of Service Vulnerability | Denial of Service | 7.5 | Important | Нет | Нет |
| CVE-2026-61352 | Remote Desktop Client Remote Code Execution Vulnerability | Remote Code Execution | 7.5 | Important | Нет | Нет |
| CVE-2026-61363 | Remote Desktop Client Remote Code Execution Vulnerability | Remote Code Execution | 7.5 | Important | Нет | Нет |
| CVE-2026-65681 | Windows iSCSI Target Service Denial of Service Vulnerability | Denial of Service | 7.5 | Important | Нет | Нет |
| CVE-2026-62898 | Microsoft QUIC Information Disclosure Vulnerability | Information Disclosure | 7.5 | Important | Нет | Нет |
| CVE-2026-58612 | PowerShell Information Disclosure Vulnerability | Information Disclosure | 7.4 | Important | Нет | Нет |
| CVE-2026-62914 | Microsoft Exchange Server Spoofing Vulnerability | Spoofing | 7.3 | Important | Нет | Нет |
| CVE-2026-68821 | Windows Package Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.3 | Important | Нет | Нет |
| CVE-2026-70355 | Microsoft SharePoint Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.3 | Important | Нет | Нет |
| CVE-2026-59119 | PowerShell Elevation of Privilege Vulnerability | Elevation of Privilege | 7.3 | Important | Нет | Нет |
| CVE-2026-64900 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 7.3 | Important | Нет | Нет |
| CVE-2026-47299 | Azure Monitor Agent Elevation of Privilege Vulnerability | Elevation of Privilege | 7.2 | Important | Нет | Нет |
| CVE-2026-62910 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Elevation of Privilege | 7.2 | Important | Нет | Нет |
| CVE-2026-65675 | CoPilot Chat Security Feature Bypass Vulnerability | Security Feature Bypass | 7.1 | Important | Нет | Нет |
| CVE-2026-50472 | Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61346 | Windows Graphics Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61361 | Windows DHCP Client Remote Code Execution Vulnerability | Remote Code Execution | 7.0 | Important | Нет | Нет |
| CVE-2026-61348 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61366 | Windows Network Connection Broker Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61927 | Windows Bind Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61939 | Winlogon Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62690 | Windows Push Notifications Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62693 | Windows MIDI Service Module Elevation of Privileges Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62705 | Windows Bind Filter Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62723 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62724 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62748 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62729 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62753 | Windows HTTP.sys Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62766 | Windows Kerberos Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62773 | Windows Kerberos Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62774 | Windows Graphics Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62892 | Capability Access Management Service (camsvc) Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62897 | .NET Framework Remote Code Execution Vulnerability | Remote Code Execution | 7.0 | Important | Нет | Нет |
| CVE-2026-62908 | Windows Backup Engine Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65678 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65788 | Desktop Window Manager Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-70307 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65783 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-59122 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-59125 | Virtual Hard Disk (VHD) Miniport Driver Elevation of Privilege Vulernability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-59126 | Windows Event Logging Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61929 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-61938 | Windows Installer Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62725 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62726 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62728 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62734 | Windows Telephony Service Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62749 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62780 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62788 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65776 | Windows Win32k Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65779 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65780 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65778 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65782 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-65781 | Windows Autopilot Elevation of Privilege Vulnerability | Elevation of Privilege | 7.0 | Important | Нет | Нет |
| CVE-2026-62702 | Windows Graphics Kernel Denial of Service Vulnerability | Denial of Service | 6.8 | Important | Нет | Нет |
| CVE-2026-62699 | Windows Universal Disk Format File System Driver (UDFS) Remote Code Execution Vulnerability | Remote Code Execution | 6.8 | Important | Нет | Нет |
| CVE-2026-70304 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-70330 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-62769 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-62881 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-62883 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-65680 | Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-65795 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-65797 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-65799 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-65798 | Windows DNS Elevation of Privilege Vulnerability | Elevation of Privilege | 6.7 | Important | Нет | Нет |
| CVE-2026-61920 | Windows DNS Server Remote Code Execution Vulnerability | Remote Code Execution | 6.6 | Important | Нет | Нет |
| CVE-2026-62837 | Microsoft SharePoint Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-63512 | Microsoft SharePoint Server Tampering Vulnerability | Tampering | 6.5 | Important | Нет | Нет |
| CVE-2026-63516 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important | Нет | Нет |
| CVE-2026-40375 | Microsoft Dynamics Business Central Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-47285 | Visual Studio Code Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-59138 | Microsoft Remote Registry Service Denial of Service Vulnerability | Denial of Service | 6.5 | Important | Нет | Нет |
| CVE-2026-61345 | Microsoft Remote Registry Service Denial of Service Vulnerability | Denial of Service | 6.5 | Important | Нет | Нет |
| CVE-2026-61924 | Windows Remote Desktop Client Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62718 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62715 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62716 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62742 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62745 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62750 | Windows HTTP Protocol Stack Tampering Vulnerability | Tampering | 6.5 | Important | Нет | Нет |
| CVE-2026-62902 | .NET Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62912 | Microsoft Exchange Server Denial of Service Vulnerability | Denial of Service | 6.5 | Important | Нет | Нет |
| CVE-2026-62915 | Microsoft Exchange Server Security Feature Bypass Vulnerability | Security Feature Bypass | 6.5 | Important | Нет | Нет |
| CVE-2026-65660 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important | Нет | Нет |
| CVE-2026-65785 | Windows DHCP Client Denial of Service Vulnerability | Denial of Service | 6.5 | Important | Нет | Нет |
| CVE-2026-65813 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Elevation of Privilege | 6.5 | Important | Нет | Нет |
| CVE-2026-65769 | Microsoft Teams iOS Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-66301 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-70327 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-70328 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-65806 | Azure CycleCloud Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-61918 | Windows Remote Desktop Client Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-61921 | Windows Remote Desktop Client Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62720 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62714 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62782 | Windows SMB Client Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-62814 | Windows DHCP Server Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-65794 | Windows SMB Client Information Disclosure Vulnerability | Information Disclosure | 6.5 | Important | Нет | Нет |
| CVE-2026-58639 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important | Нет | Нет |
| CVE-2026-62839 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 6.5 | Important | Нет | Нет |
| CVE-2026-62708 | Windows Kernel Elevation of Privilege Vulnerability | Elevation of Privilege | 6.4 | Important | Нет | Нет |
| CVE-2026-62899 | .NET Security Feature Bypass Vulnerability | Security Feature Bypass | 5.9 | Important | Нет | Нет |
| CVE-2026-62900 | .NET Information Disclosure Vulnerability | Information Disclosure | 5.9 | Important | Нет | Нет |
| CVE-2026-68819 | Windows Network File System Denial of Service Vulnerability | Denial of Service | 5.9 | Important | Нет | Нет |
| CVE-2026-65796 | Windows iSCSI Target Service Denial of Service Vulnerability | Denial of Service | 5.9 | Important | Нет | Нет |
| CVE-2026-59130 | AMD Zen Information Disclosure Vulnerability | Information Disclosure | 5.6 | Important | Нет | Нет |
| CVE-2026-59131 | AMD Zen Information Disclosure Vulnerability | Information Disclosure | 5.6 | Important | Нет | Нет |
| CVE-2026-59128 | Windows Encrypting File System (EFS) Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-59135 | Microsoft Windows Search Component Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-59136 | Microsoft COM for Windows Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-59137 | Windows Event Logging Service Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-61347 | Windows Event Logging Service Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-61928 | Windows Hello Tampering Vulnerability | Tampering | 5.5 | Important | Нет | Нет |
| CVE-2026-61933 | Windows DWM Core Library Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-61936 | Windows Defender Firewall Service Security Feature Bypass Vulnerability | Security Feature Bypass | 5.5 | Important | Нет | Нет |
| CVE-2026-62703 | Windows DWM Core Library Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62746 | Win32k Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62740 | Windows Imaging Component Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62798 | Win32k Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62796 | Windows NTFS Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-54123 | Microsoft Defender for Endpoint for Mac Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63517 | Microsoft Office Graphics Component Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63521 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-65662 | Windows GDI Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-65784 | Windows NTFS Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68802 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68808 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68809 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68813 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70312 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70310 | Microsoft Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70316 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70315 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70318 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70314 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70317 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70325 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70319 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70320 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70323 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70322 | Powerpoint Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70348 | Windows Management Services Denial of Service Vulnerability | Denial of Service | 5.5 | Important | Нет | Нет |
| CVE-2026-61360 | Windows GDI Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62709 | Windows GDI+ Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62743 | Win32k Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62730 | Windows Wired AutoConfig Service Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62775 | Windows Container Isolation FS Filter Driver (unionfs.sys) Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62786 | Win32k Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62793 | Windows NTFS Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62887 | Windows NTFS Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62842 | Microsoft Office Graphics Component Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63524 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63528 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63529 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63530 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-63531 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-64899 | Microsoft Office Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-64917 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-66806 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-66810 | Microsoft Office Word Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-66809 | Microsoft Office Graphics Component Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68797 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-68799 | Microsoft Excel Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-62738 | Windows Management Instrumentation Information Disclosure Vulnerability | Information Disclosure | 5.5 | Important | Нет | Нет |
| CVE-2026-70339 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | Remote Code Execution | 5.4 | Important | Нет | Нет |
| CVE-2026-62757 | Windows Schannel Security Feature Bypass Vulnerability | Security Feature Bypass | 5.3 | Important | Нет | Нет |
| CVE-2026-65777 | Active Directory Security Feature Bypass Vulnerability | Security Feature Bypass | 5.3 | Important | Нет | Нет |
| CVE-2026-61368 | Windows Hyper-V Information Disclosure Vulnerability | Information Disclosure | 5.0 | Important | Нет | Нет |
| CVE-2026-62829 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-61350 | Windows NTFS Information Disclosure Vulnerability | Information Disclosure | 4.6 | Important | Нет | Нет |
| CVE-2026-64922 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-64897 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-64902 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-64916 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-62917 | Microsoft SharePoint Server Spoofing Vulnerability | Spoofing | 4.6 | Important | Нет | Нет |
| CVE-2026-62882 | Microsoft Outlook Spoofing Vulnerability | Spoofing | 4.3 | Important | Нет | Нет |
Ретроспективный анализ уязвимостей
CVE-2026-50338 - Azure Spring Apps Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость некорректной аутентификации (CWE-287) в Azure Spring Apps, позволяющая аутентифицированному злоумышленнику с начальными привилегиями повысить свои права через сеть. Успешная эксплуатация приводит к изменению области безопасности, что позволяет атаковать ресурсы за пределами компонента Azure Spring Apps в облачной инфраструктуре. Атака отличается высокой сложностью и требует предварительной подготовки целевого окружения. Для уязвимости доступен PoC. Уязвимость была исправлена в июле 2026 года.
CVE-2026-49176 - Windows WalletService Elevation of Privilege Vulnerability (Elevation of Privilege). Локальная уязвимость повышения привилегий, связанная с некорректным управлением доступом и разрешением ссылок. Эксплуатация позволяет злоумышленнику с базовыми правами задействовать уязвимый WinRT-интерфейс WalletService и перенаправление путей (например, через подмену папки документов), чтобы выполнить код с системными привилегиями (NT AUTHORITY\SYSTEM). Уязвимость была исправлена в июле 2026 года.
CVE-2026-58635 - Windows Narrator Braille Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость внедрения команд (Command Injection) в компоненте Windows Narrator Braille, позволяющая локальному злоумышленнику повысить свои привилегии до контекста системной учетной записи «NT AUTHORITY\Network Service». Проблема связана с некорректной нейтрализацией путей к файлам при их передаче в качестве параметров через библиотеку brlapi.dll. Для данной уязвимости существует подтвержденный PoC, демонстрирующий эксплуатацию через манипуляцию параметрами таблиц Брайля при установке соединения. Уязвимость была исправлена в июле 2026 года.
CVE-2026-50343 - Microsoft Install Service Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость связана с некорректным управлением привилегиями (неправильные списки контроля доступа, ACL) в разделе реестра службы Microsoft Store Install Service. Локальный непривилегированный пользователь может записать путь к произвольной динамической библиотеке (DLL) в ключ реестра StaticPluginMap. При инициации проверки обновлений через WinRT API (AppInstallManager) системная служба подгружает эту библиотеку, что приводит к локальному повышению привилегий и выполнению произвольного кода с наивысшими правами NT AUTHORITY\SYSTEM. Для данной уязвимости существует PoC. Уязвимость была исправлена в июле 2026 года.
CVE-2026-50454 — Windows User Interface Core Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость связана с выходом за пределы каталога (Relative Path Traversal) в подсистеме Windows User Interface Core, что позволяет локальному пользователю повысить свои привилегии до уровня SYSTEM. Доступный PoC демонстрирует перехват защищенной ассоциации протокола ms-settings через внутренний WinRT COM-интерфейс AppResolver с последующим запуском доверенного системного процесса fodhelper.exe для обхода UAC и выполнения произвольного кода с правами SYSTEM. Уязвимость была исправлена в июле 2026 года.
CVE-2026-50402 — Windows NTFS Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость связана с ошибкой сравнения знаковых и беззнаковых целых чисел в функции NtfsIsBootSectorNtfs драйвера ntfs.sys при валидации номера кластера MFT. При открытии специально сформированного файла VHDX некорректная проверка позволяет обойти валидацию и вызвать чтение за пределами буфера, что приводит к отказу в обслуживании, а также позволяет модифицировать права доступа к файлам на уровне ядра путем манипуляций с журналом $LogFile, на GitHub находится подробное техническое описание уязвимости. Уязвимость была исправлена в июле 2026 года.
CVE-2026-58613 — Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость типа Use-After-Free (UAF) в драйвере мини-фильтра облачных файлов Windows (cldflt.sys), разбор которой опубликовали исследователи из Cisco Talos. Проблема связана с некорректной очисткой осиротевших запросов в глобальном таймере обратного отсчета при преждевременном завершении процесса поставщика синхронизации. Это приводит к обращению к освобожденному контексту потока (HSM_STREAM_CONTEXT) при выполнении функции CldiStreamCompleteRequest и позволяет локальному злоумышленнику повысить свои привилегии до уровня SYSTEM, подробное описание уязвимости представлено на сайте. Уязвимость была исправлена в июле 2026 года.
CVE-2026-50475 — Windows Kernel Information Disclosure Vulnerability (Information Disclosure). Исследователи из Cisco Talos опубликовали подробный отчет с PoC-кодом, демонстрирующим уязвимость выхода за границы на единицу (off-by-one) в функции NsipGetAllInformationProviderParameters драйвера NETIO.sys. Отправка специально сформированного I/O-запроса (IRP) позволяет локальному аутентифицированному пользователю извлечь 16 байт данных из памяти ядра. Это раскрывает адреса функций tcpip.sys и позволяет вычислить базовый адрес драйвера, что приводит к полному обходу механизма защиты KASLR. Уязвимость была исправлена в июле 2026 года.
CVE-2026-50416 — Win32k Information Disclosure Vulnerability (Information Disclosure). Уязвимость в подсистеме Win32k, связанная с утечкой необработанного указателя ядра по смещению
0x100в пользовательской проекции кучи рабочего стола (desktop heap). Это позволяет локальным процессам с минимальными правами, включая изолированные песочницы (Low Integrity, AppContainer, LPAC), считывать адреса памяти ядра и вычислять точные виртуальные адреса объектов окон и меню, что приводит к полному обходу механизма защиты KASLR, на GitHub представлен PoC и описание уязвимости. Уязвимость была исправлена в июле 2026 года.CVE-2026-50656 — Microsoft Defender Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость в движке защиты от вредоносных программ Microsoft Malware Protection Engine (mpengine.dll), публично известная под названием "RoguePlanet". Проблема связана с некорректной обработкой символических ссылок перед доступом к файлам и возникновением условия гонки состояний при сканировании файлов движком Defender. Локальный аутентифицированный пользователь с низкими привилегиями может использовать манипуляции с символическими ссылками во время обработки файлов антивирусным процессом, что позволяет перенаправить файловые операции и повысить свои привилегии в системе. Для проверки доступен концептуальный PoC. Уязвимость была исправлена в июне 2026 года.
CVE-2026-42978 — Windows Push Notifications Elevation of Privilege Vulnerability (Elevation of Privilege). Уязвимость типа Use-After-Free и Race Condition в службе уведомлений Windows (WpnService / wpncore.dll), исполняющейся в контексте NT AUTHORITY\SYSTEM. Проблема связана с отсутствием синхронизации и проверок состояния завершения работы платформы в методах класса PresentationEndpointFacade: локальный авторизованный злоумышленник может вызвать состояние гонки при обращении к освобождаемому объекту NotificationPlatform для выполнения кода с привилегиями уровня SYSTEM. На GitHub доступно исследование уязвимости. Уязвимость была исправлена в июне 2026 года.
CVE-2026-45659 - Microsoft SharePoint Remote Code Execution Vulnerability (Remote Code Execution). Уязвимость небезопасной десериализации данных в Microsoft SharePoint, позволяющая аутентифицированному злоумышленнику с минимальными привилегиями выполнить произвольный код на сервере через сетевой запрос к REST API, на GitHub представлен PoC. Исправлена в мае 2026 года.
CVE-2026-41091 - Microsoft Defender Elevation of Privilege Vulnerability (Elevation of Privilege). Локальная уязвимость в антивирусном движке Microsoft Malware Protection Engine (mpengine.dll), связанная с некорректной обработкой точек соединения и символических ссылок. Эксплуатация уязвимости позволяет авторизованному злоумышленнику использовать состояние гонки с помощью механизма блокировок Oplock и Cloud Filter API для перенаправления операций записи в защищенные системные каталоги и выполнения кода с привилегиями уровня SYSTEM, на GitHub представлен PoC. Уязвимость была исправлена в мае 2026 года.
Вывод
Августовское обновление 2026 года продолжает испытывать на прочность процессы кибербезопасности в компаниях. Усталость от июльского рекордного патча (622 уязвимости) не должна стать причиной промедления, так как августовский пакет содержит активно эксплуатируемую уязвимость и угрозы с максимальным рейтингом CVSS 10.0.
Рекомендуемый план действий на август:
- Немедленное реагирование (Zero-Day и Public): В экстренном порядке обновите рабочие станции и серверы для закрытия уязвимости в драйвере AFD.sys (CVE-2026-68820), которая уже используется в реальных атаках. Также приоритетно закройте публично раскрытые бреши в службе профилей пользователей (CVE-2026-62832) и драйвере unionfs.sys (CVE-2026-72971).
- Защита критической инфраструктуры (CVSS 10.0 / 9.9): Серверы баз данных (Azure SQL), корпоративные коммуникации (Microsoft Teams) и ключевые компоненты облака (Entra, Service Bus) должны быть пропатчены немедленно. Компрометация этих систем приведет к остановке бизнес-процессов.
- Сетевой периметр и базовые службы: Накатите обновления на серверы, выполняющие роли DNS, DHCP, RPC и файловых шар (SMBv3). RCE в этих компонентах — прямой путь к потере всего домена Active Directory.
- Конечные пользователи и веб-порталы: Обновите клиенты Microsoft Office и серверы SharePoint для блокировки фишинговых атак и кражи корпоративных данных.
Критическое предупреждение по ретроспективе: Раздел «Ретроспективный анализ уязвимостей» в этом месяце выглядит как каталог готового кибероружия. В открытом доступе (на GitHub и в блогах ИБ-исследователей) опубликованы высококачественные PoC-эксплойты для уязвимостей мая, июня и июля. Речь идет о повышении привилегий через Install Service, Defender, NTFS, Cloud Files, Win32k, а также RCE в SharePoint. Наличие этих скриптов означает, что любая система, не получившая обновления за лето 2026 года, может быть взломана даже низкоквалифицированным злоумышленником («скрипт-кидди») за считанные минуты. Закрытие технического долга по патчам за прошлые месяцы — абсолютный приоритет.