【漏洞通告】微软9月多个安全漏洞

admin 2026-09-10 04:39:46 网络安全文章 来源:ZONE.CI 全球网 0 阅读模式

文章总结: 微软发布2026年9月安全更新,修复973个漏洞,含113个严重级别和860个重要级别漏洞,其中60个被标记为更可能被利用。漏洞涵盖特权提升、远程代码执行、信息泄露等多种类型,涉及Windows内核、DNS、远程桌面服务等组件。建议优先修复高风险漏洞,降低潜在安全威胁。 综合评分: 85 文章分类: 漏洞预警,漏洞分析,安全运营,解决方案


【漏洞通告】微软9月多个安全漏洞

启明星辰安全简讯

2026年9月9日 16:04 北京

在小说阅读器读本章

去阅读

在公众号小说中沉浸阅读

、漏洞概述

2026年9月9日,启明星辰安全应急响应中心(VSRC)监测到微软发布了9月安全更新,本次更新修复了973个漏洞,涵盖特权提升、远程代码执行、信息泄露等多种漏洞类型。漏洞级别分布如下:113个严重级别漏洞,860个重要级别漏洞(漏洞级别依据微软官方数据)。

其中,60个漏洞被微软标记为“更可能被利用”及“检测利用情形”,表明这些漏洞存在较高的利用风险,建议优先修复以降低潜在安全威胁。

| | | | | — | — | — | | CVE-ID | CVE 标题 | 漏洞级别 | | CVE-2026-68846 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68876 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68880 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-68884 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69274 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69277 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69301 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69305 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69310 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-69337 | Windows 注册表特权提升漏洞 | 重要 | | CVE-2026-69364 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69366 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69385 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69391 | Windows 代理基础结构服务特权提升漏洞 | 重要 | | CVE-2026-69406 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69436 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69450 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69451 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-69459 | Windows Power Dependency Coordinator 特权提升漏洞 | 重要 | | CVE-2026-69460 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69466 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69467 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-69473 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69478 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69498 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69525 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69541 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69585 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69600 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69605 | Microsoft 安装服务特权提升漏洞 | 重要 | | CVE-2026-69623 | Windows HTTP 打印提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69676 | Windows Kerberos 远程代码执行漏洞 | 严重 | | CVE-2026-69714 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69723 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69730 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69757 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69777 | Microsoft DHCP 客户端特权提升漏洞 | 重要 | | CVE-2026-69779 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69832 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69854 | Spring Cloud Azure 特权提升 漏洞 | 严重 | | CVE-2026-69857 | Azure Cosmos DB 欺骗漏洞 | 严重 | | CVE-2026-69911 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69921 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-70289 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70342 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-70562 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-70583 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70585 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-71340 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-71343 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-72936 | Windows SMB 客户端远程执行代码漏洞 | 重要 | | CVE-2026-72940 | Windows Schannel 远程代码执行漏洞 | 重要 | | CVE-2026-72957 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-77500 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-78454 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-80093 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-81963 | Windows Update Stack 特权提升漏洞 | 重要 | | CVE-2026-83501 | Windows 基于虚拟化的安全性 (VBS) 信息泄露漏洞 | 严重 | | CVE-2026-85880 | Windows 高级本地过程调用 (ALPC) 特权提升漏洞 | 重要 |

微软9月更新修复的完整漏洞列表如下

| | | | | — | — | — | | CVE-ID | CVE 标题 | 漏洞级别 | | CVE-2026-47297 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-50349 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-55007 | Microsoft Exchange Server 远程执行代码漏洞 | 重要 | | CVE-2026-56172 | Windows VHD 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-56177 | Windows Server 特权提升漏洞 | 重要 | | CVE-2026-56198 | Microsoft Trace Data Helper Elevation of Privilege Vulnerability | 重要 | | CVE-2026-57098 | Microsoft Remote Desktop 适用于 Windows 的应用 信息泄露 漏洞 | 重要 | | CVE-2026-57099 | ASP.NET Core 拒绝服务漏洞 | 重要 | | CVE-2026-58599 | HEVC Video 扩展程序远程执行代码漏洞 | 严重 | | CVE-2026-58600 | HEVC 视频扩展特权提升漏洞 | 重要 | | CVE-2026-58611 | Xbox 游戏服务特权提升漏洞 | 重要 | | CVE-2026-58649 | .NET 信息泄漏漏洞 | 重要 | | CVE-2026-62694 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-62697 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-62706 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-62744 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-62759 | Windows 网络登录 (Netlogon) 欺骗漏洞 | 重要 | | CVE-2026-62762 | Windows Active Directory 域服务拒绝服务漏洞 | 重要 | | CVE-2026-62801 | Microsoft PowerShell 安全功能绕过漏洞 | 重要 | | CVE-2026-62804 | Microsoft Word 远程执行代码漏洞 | 重要 | | CVE-2026-62810 | Active Directory Certificate Services (AD CS) 特权提升 漏洞 | 重要 | | CVE-2026-62813 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-62895 | Azure Arc SQL Server 扩展 特权提升 漏洞 | 重要 | | CVE-2026-62906 | Microsoft Discovery Studio 信息泄露 漏洞 | 严重 | | CVE-2026-62916 | Microsoft Entra ID 特权提升漏洞 | 严重 | | CVE-2026-63523 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-64918 | Microsoft Office 欺骗漏洞 | 重要 | | CVE-2026-65669 | Microsoft SQL Server 特权提升漏洞 | 严重 | | CVE-2026-65772 | Microsoft Dynamics 365(本地)远程执行代码漏洞 | 严重 | | CVE-2026-65812 | Android 版 Microsoft Teams 信息披露漏洞 | 重要 | | CVE-2026-65818 | Power Automate 特权提升漏洞 | 严重 | | CVE-2026-66302 | Skype for Business 远程执行代码漏洞 | 严重 | | CVE-2026-66303 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66304 | Skype for Business 信息泄漏漏洞 | 重要 | | CVE-2026-66305 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-66306 | Skype for Business 信息泄漏漏洞 | 重要 | | CVE-2026-66307 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66308 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66814 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66816 | Microsoft SQL Server 安全功能绕过漏洞 | 重要 | | CVE-2026-66818 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66819 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66820 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-67368 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67369 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67370 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67373 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67376 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67378 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67379 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67380 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67381 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67383 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67384 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67385 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67386 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67388 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67389 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67390 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67393 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67624 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67629 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67630 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67631 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67633 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67636 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67638 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67639 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67641 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67642 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67643 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67645 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67648 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68775 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68776 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68777 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68778 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68779 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68780 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68781 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68784 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68785 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68786 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68787 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68824 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-68825 | Windows 绑定筛选器驱动程序特权提升漏洞 | 重要 | | CVE-2026-68827 | Windows GDI+ 特权提升漏洞 | 重要 | | CVE-2026-68828 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-68830 | Windows 通用即插即用 (UPnP) 设备主机信息泄露漏洞 | 重要 | | CVE-2026-68831 | Windows Defender 防火墙服务信息泄露漏洞 | 重要 | | CVE-2026-68832 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68833 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-68834 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68835 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-68837 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-68838 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68839 | Windows USB 大容量存储类驱动远程代码执行漏洞 | 重要 | | CVE-2026-68840 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-68841 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68842 | Windows MIDI 服务模块信息泄露漏洞 | 重要 | | CVE-2026-68843 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-68844 | Windows Storage Spaces Controller Remote Code Execution Vulnerability | 重要 | | CVE-2026-68845 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68846 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68847 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-68848 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-68849 | Windows 蓝牙端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-68850 | Microsoft 帐户特权提升漏洞 | 重要 | | CVE-2026-68851 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-68852 | Microsoft 帐户信息泄露漏洞 | 重要 | | CVE-2026-68873 | Windows 程序兼容性助手服务信息泄露漏洞 | 重要 | | CVE-2026-68874 | Windows 程序兼容性助手服务信息泄露漏洞 | 重要 | | CVE-2026-68875 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-68876 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68877 | Windows Storage Spaces Controller Remote Code Execution Vulnerability | 重要 | | CVE-2026-68878 | Windows Fast FAT 驱动特权提升漏洞 | 重要 | | CVE-2026-68880 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-68881 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-68884 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68885 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68886 | Windows 网络连接代理信息泄露漏洞 | 重要 | | CVE-2026-68887 | Windows Message Queuing Queue Manager Denial of Service Vulnerability | 重要 | | CVE-2026-68888 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68889 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68890 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68891 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-68892 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68893 | 远程桌面授权服务特权提升漏洞 | 重要 | | CVE-2026-68894 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-68895 | Internet 存储名称服务信息泄露漏洞 | 重要 | | CVE-2026-68896 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-68897 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68898 | Windows iSCSI 拒绝服务漏洞 | 重要 | | CVE-2026-69265 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69266 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69267 | Windows 已连接的用户体验和遥测信息泄露漏洞 | 重要 | | CVE-2026-69268 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69269 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69270 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69271 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69272 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69273 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69274 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69275 | Kernel Streaming WOW Thunk 服务驱动程序特权提升漏洞 | 重要 | | CVE-2026-69276 | Microsoft UxTheme 主题库 (uxtheme.dll) 远程代码执行漏洞 | 重要 | | CVE-2026-69277 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69279 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-69280 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-69281 | Windows 许可证管理器特权提升漏洞 | 重要 | | CVE-2026-69282 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69283 | Windows CD-ROM 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69284 | Windows DCOM 服务器特权提升漏洞 | 重要 | | CVE-2026-69285 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-69286 | Windows USB 音频类驱动器信息披露漏洞 | 重要 | | CVE-2026-69287 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-69288 | Windows GDI+ 信息泄露漏洞 | 重要 | | CVE-2026-69289 | Windows 安装程序文件清理特权提升漏洞 | 重要 | | CVE-2026-69290 | Windows 储存空间控件特权提升漏洞 | 重要 | | CVE-2026-69291 | Windows 卷管理器扩展驱动程序 远程代码执行漏洞 | 重要 | | CVE-2026-69292 | 远程桌面网关服务特权提升漏洞 | 重要 | | CVE-2026-69293 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69294 | 适用于Windows 的 Microsoft COM 信息泄露漏洞 | 重要 | | CVE-2026-69295 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69296 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69297 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69298 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69299 | 用于Windows 的 Microsoft COM 特权提升漏洞 | 重要 | | CVE-2026-69300 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-69301 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69303 | 推送消息路由服务信息泄露漏洞 | 重要 | | CVE-2026-69304 | ASP.NET Core 拒绝服务漏洞 | 重要 | | CVE-2026-69305 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69307 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69308 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69309 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69310 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-69311 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69312 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69313 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69314 | Windows 设备关联中转站服务特权提升漏洞 | 重要 | | CVE-2026-69315 | Windows 许可证管理器信息泄露漏洞 | 重要 | | CVE-2026-69316 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69317 | Windows 远程桌面客户端信息泄露漏洞 | 重要 | | CVE-2026-69318 | Windows 成像组件信息泄露漏洞 | 重要 | | CVE-2026-69319 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69321 | Windows 电源依赖协调器篡改漏洞 | 重要 | | CVE-2026-69322 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69323 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69324 | Windows 性能监视器特权提升漏洞 | 重要 | | CVE-2026-69325 | Microsoft JScript 脚本引擎远程代码执行漏洞 | 重要 | | CVE-2026-69328 | Windows 存储特权提升漏洞 | 重要 | | CVE-2026-69329 | BranchCache 拒绝服务漏洞 | 重要 | | CVE-2026-69331 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-69332 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69333 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69334 | Windows 卷管理器扩展驱动程序 远程代码执行漏洞 | 重要 | | CVE-2026-69335 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69336 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69337 | Windows 注册表特权提升漏洞 | 重要 | | CVE-2026-69338 | 远程桌面网关服务特权提升漏洞 | 重要 | | CVE-2026-69339 | Windows MIDI 服务模块信息泄露漏洞 | 重要 | | CVE-2026-69340 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69341 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69342 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69343 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69344 | Windows 打印后台处理程序组件信息泄露漏洞 | 重要 | | CVE-2026-69345 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69346 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69347 | Windows 快速 FAT 文件系统驱动远程代码执行漏洞 | 重要 | | CVE-2026-69348 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69349 | Windows Management Instrumentation (WMI) 信息泄露漏洞 | 重要 | | CVE-2026-69350 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69351 | Windows 通用即插即用 (UPnP) 设备主机信息泄露漏洞 | 重要 | | CVE-2026-69352 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69353 | Windows 文本整形功能信息泄露漏洞 | 重要 | | CVE-2026-69355 | Microsoft Exchange Server 远程执行代码漏洞 | 重要 | | CVE-2026-69356 | Microsoft Exchange Server 欺骗漏洞 | 重要 | | CVE-2026-69357 | Windows NDIS 特权提升漏洞 | 重要 | | CVE-2026-69358 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-69359 | Active Directory Domain Services Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69360 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69361 | Microsoft Exchange Server 欺骗漏洞 | 重要 | | CVE-2026-69362 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69364 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69365 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69366 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69367 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69368 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69369 | Windows DNS 信息泄露漏洞 | 重要 | | CVE-2026-69371 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69372 | Windows网络文件系统拒绝服务漏洞 | 重要 | | CVE-2026-69373 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69374 | Windows SMB 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69375 | Microsoft Exchange Server 篡改漏洞 | 重要 | | CVE-2026-69376 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69377 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69378 | Microsoft Exchange Server 拒绝服务漏洞 | 重要 | | CVE-2026-69379 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69380 | Microsoft Exchange Server 特权提升漏洞 | 重要 | | CVE-2026-69381 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-69382 | Microsoft Exchange Server Information Disclosure Vulnerability | 重要 | | CVE-2026-69383 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69384 | 虚拟硬盘(VHD) 微型端口驱动拒绝服务漏洞 | 重要 | | CVE-2026-69385 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69386 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69388 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69389 | Windows 存储管理提供程序特权提升漏洞 | 重要 | | CVE-2026-69390 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69391 | Windows 代理基础结构服务特权提升漏洞 | 重要 | | CVE-2026-69392 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69393 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69394 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69395 | Active Directory Certificate Services (AD CS) Information Disclosure Vulnerability | 重要 | | CVE-2026-69396 | Windows NDIS 特权提升漏洞 | 重要 | | CVE-2026-69397 | Microsoft OpenSSH for Windows 远程代码执行漏洞 | 重要 | | CVE-2026-69398 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69401 | 音频视频控制传输协议特权提升漏洞 | 重要 | | CVE-2026-69402 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69403 | Windows SMB 服务器信息泄露漏洞 | 重要 | | CVE-2026-69404 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69405 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69406 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69407 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69408 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69409 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69410 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69412 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69413 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69415 | Windows DHCP 服务器特权提升漏洞 | 重要 | | CVE-2026-69416 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69417 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69418 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69420 | Microsoft VOLSNAP.SYS 特权提升漏洞 | 重要 | | CVE-2026-69421 | Windows 内核模式驱动程序特权提升漏洞 | 重要 | | CVE-2026-69422 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69423 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69424 | Windows 分布式文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69425 | Windows NTFS 篡改漏洞 | 重要 | | CVE-2026-69426 | Windows VOLSNAP.SYS Remote Code Execution Vulnerability | 重要 | | CVE-2026-69427 | Microsoft VOLSNAP.SYS 特权提升漏洞 | 重要 | | CVE-2026-69428 | Windows LDAP – 轻型目录访问协议拒绝服务漏洞 | 重要 | | CVE-2026-69429 | Windows Internet 密钥交换 (IKE) 协议扩展远程代码执行漏洞 | 重要 | | CVE-2026-69430 | Windows 嵌入模式服务特权提升漏洞 | 重要 | | CVE-2026-69431 | Telnet 客户端远程代码执行漏洞 | 重要 | | CVE-2026-69432 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69433 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69434 | Windows URL Moniker 远程代码执行漏洞 | 重要 | | CVE-2026-69436 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69438 | Microsoft JScript 脚本引擎远程代码执行漏洞 | 重要 | | CVE-2026-69439 | .NET 和 Visual Studio 特权提升漏洞 | 重要 | | CVE-2026-69440 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69441 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-69442 | Microsoft Office 远程执行代码漏洞 | 重要 | | CVE-2026-69443 | Windows 设备健康证明 (DHA) 信息泄露 漏洞 | 重要 | | CVE-2026-69444 | Microsoft Windows 语音组件特权提升漏洞 | 重要 | | CVE-2026-69445 | Windows 压缩文件夹特权提升漏洞 | 重要 | | CVE-2026-69447 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69448 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69449 | Windows BitLocker 远程代码执行漏洞 | 重要 | | CVE-2026-69450 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69451 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-69453 | Microsoft Windows Search 组件篡改漏洞 | 重要 | | CVE-2026-69455 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-69456 | Microsoft Windows 语音组件特权提升漏洞 | 重要 | | CVE-2026-69457 | Windows USB 驱动程序信息泄露漏洞 | 重要 | | CVE-2026-69458 | Windows BitLocker 特权提升漏洞 | 重要 | | CVE-2026-69459 | Windows Power Dependency Coordinator 特权提升漏洞 | 重要 | | CVE-2026-69460 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69461 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69462 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69463 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69464 | Microsoft Office SharePoint 特权提升 漏洞 | 重要 | | CVE-2026-69465 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69466 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69467 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-69468 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-69469 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69470 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-69472 | Windows Devices Human Interface 特权提升漏洞 | 重要 | | CVE-2026-69473 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69474 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69475 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-69476 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69477 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69478 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69479 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69480 | Windows Partition Management Driver 特权提升漏洞 | 重要 | | CVE-2026-69481 | Windows 企业应用管理特权提升漏洞 | 重要 | | CVE-2026-69482 | Windows 错误报告篡改漏洞 | 重要 | | CVE-2026-69483 | Windows 图像采集 (WIA) 信息泄露漏洞 | 重要 | | CVE-2026-69485 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-69488 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69489 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69490 | Windows USB Mass Storage Class Driver Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69491 | Microsoft DirectMusic 远程代码执行漏洞 | 重要 | | CVE-2026-69492 | Windows Partition Management Driver 特权提升漏洞 | 重要 | | CVE-2026-69493 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69494 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69495 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69496 | Windows 压缩文件夹远程代码执行漏洞 | 重要 | | CVE-2026-69497 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69498 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69499 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-69500 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69501 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69503 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69504 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-69505 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69507 | Microsoft Windows Search 组件信息泄露漏洞 | 重要 | | CVE-2026-69508 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69509 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-69510 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-69511 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69512 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69513 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69514 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69516 | 连接设备平台服务(Cdpsvc) 特权提升漏洞 | 重要 | | CVE-2026-69517 | Windows 无线网络特权提升漏洞 | 重要 | | CVE-2026-69518 | Windows Remote Desktop 远程代码执行 漏洞 | 严重 | | CVE-2026-69522 | .NET 和 Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-69524 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-69525 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69527 | Windows USB 大容量存储类驱动器信息泄露漏洞 | 重要 | | CVE-2026-69528 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69529 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69530 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-69531 | Microsoft Windows 语音组件篡改漏洞 | 重要 | | CVE-2026-69532 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69534 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-69535 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69536 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69538 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-69539 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69540 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69541 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69542 | Windows 相机帧服务器监视器特权提升漏洞 | 重要 | | CVE-2026-69544 | Microsoft SMB 客户端特权提升漏洞 | 重要 | | CVE-2026-69546 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-69547 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69548 | Windows RNDIS 信息泄露漏洞 | 重要 | | CVE-2026-69549 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69551 | Windows DNS Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-69552 | Windows 打印后台处理程序组件信息泄露漏洞 | 重要 | | CVE-2026-69553 | Windows Hyper-V 特权提升漏洞 | 重要 | | CVE-2026-69554 | Microsoft Windows Search 组件篡改漏洞 | 重要 | | CVE-2026-69556 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69559 | Microsoft Teams for Android 信息泄露漏洞 | 重要 | | CVE-2026-69560 | Windows Work Folder 服务权限提升漏洞 | 重要 | | CVE-2026-69561 | Windows CD-ROM 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69562 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-69563 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-69564 | Windows 联机证书状态协议 (OCSP) 特权提升 漏洞 | 重要 | | CVE-2026-69566 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69567 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69568 | 存储空间控制器信息泄露漏洞 | 重要 | | CVE-2026-69569 | Windows 打印后台处理程序组件拒绝服务漏洞 | 重要 | | CVE-2026-69571 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69572 | Windows SMB 客户端信息泄露漏洞 | 重要 | | CVE-2026-69573 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69574 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69575 | Windows 储存空间控件特权提升漏洞 | 重要 | | CVE-2026-69576 | 图形字体特权提升漏洞 | 重要 | | CVE-2026-69578 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69579 | Windows Message Queuing 远程代码执行漏洞 | 严重 | | CVE-2026-69580 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69581 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69582 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-69583 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69584 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69585 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69586 | Microsoft Windows PDF 远程代码执行漏洞 | 重要 | | CVE-2026-69587 | Windows Internet 密钥交换 (IKE) 扩展拒绝服务漏洞 | 重要 | | CVE-2026-69588 | Windows TCP/IP 拒绝服务漏洞 | 重要 | | CVE-2026-69589 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69590 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69591 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-69592 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69593 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69594 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69595 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-69597 | Windows HTTP.sys 特权提升漏洞 | 重要 | | CVE-2026-69598 | Windows iSCSI 远程代码执行漏洞 | 重要 | | CVE-2026-69599 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69600 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69601 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 严重 | | CVE-2026-69602 | Windows PrintWorkflowUserSvc 特权提升漏洞 | 重要 | | CVE-2026-69603 | Windows Hyper-V 远程执行代码漏洞 | 严重 | | CVE-2026-69604 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69605 | Microsoft 安装服务特权提升漏洞 | 重要 | | CVE-2026-69606 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69607 | Windows 部署服务远程代码执行漏洞 | 重要 | | CVE-2026-69608 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69609 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69610 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69611 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69612 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69613 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69614 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69615 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69616 | Windows 远程桌面服务信息泄露漏洞 | 重要 | | CVE-2026-69617 | Windows Resilient 文件系统 (ReFS) 特权提升漏洞 | 重要 | | CVE-2026-69618 | Windows SMB 客户端信息泄露漏洞 | 重要 | | CVE-2026-69619 | Windows exFAT 文件系统特权提升漏洞 | 重要 | | CVE-2026-69620 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69621 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-69623 | Windows HTTP 打印提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69624 | Active Directory 证书服务 (AD CS) 篡改漏洞 | 重要 | | CVE-2026-69625 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-69626 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-69627 | Windows 远程桌面授权服务信息泄露漏洞 | 重要 | | CVE-2026-69628 | Windows iSCSI 远程代码执行漏洞 | 重要 | | CVE-2026-69629 | Microsoft Office Outlook 远程代码执行漏洞 | 重要 | | CVE-2026-69630 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69631 | Windows DNS 拒绝服务漏洞 | 重要 | | CVE-2026-69632 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-69636 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69637 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69638 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69641 | Microsoft Exchange Server 特权提升漏洞 | 重要 | | CVE-2026-69642 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-69643 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69645 | Windows 消息队列 (MSMQ) 特权提升漏洞 | 重要 | | CVE-2026-69646 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-69648 | Windows 通知特权提升漏洞 | 重要 | | CVE-2026-69649 | Raw Image Extension Remote Code Execution Vulnerability | 严重 | | CVE-2026-69652 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69654 | Windows 帐户控制特权提升漏洞 | 重要 | | CVE-2026-69669 | Windows Kernel 远程代码执行漏洞 | 重要 | | CVE-2026-69671 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69672 | Windows DNS 信息泄露漏洞 | 重要 | | CVE-2026-69674 | Windows 新式设备管理 (MDM) 安全功能绕过漏洞 | 重要 | | CVE-2026-69676 | Windows Kerberos 远程代码执行漏洞 | 严重 | | CVE-2026-69678 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69679 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69680 | Windows DNS 欺骗漏洞 | 重要 | | CVE-2026-69681 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69682 | Windows 主机保护者服务特权提升漏洞 | 重要 | | CVE-2026-69683 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69684 | Windows 错误报告信息泄露漏洞 | 重要 | | CVE-2026-69685 | Windows Kerberos 特权提升漏洞 | 重要 | | CVE-2026-69686 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69687 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69688 | Windows 加密文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69689 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69690 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69691 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69692 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69693 | Windows 设备关联中转站服务特权提升漏洞 | 重要 | | CVE-2026-69694 | Windows IP 地址管理(IPAM) 服务特权提升漏洞 | 重要 | | CVE-2026-69706 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69707 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69708 | Windows Web 平台存储 特权提升 漏洞 | 重要 | | CVE-2026-69709 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69710 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69711 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69712 | Windows 密钥分发中心远程代码执行漏洞 | 严重 | | CVE-2026-69713 | Windows 安全启动安全功能绕过漏洞 | 重要 | | CVE-2026-69714 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69715 | Windows Direct Show 远程代码执行漏洞 | 重要 | | CVE-2026-69716 | Microsoft Office SharePoint 特权提升 漏洞 | 重要 | | CVE-2026-69717 | Windows 组策略特权提升漏洞 | 重要 | | CVE-2026-69719 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-69720 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69722 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69723 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69724 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69725 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69727 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69729 | Windows 凭据提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69730 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69731 | HID 类驱动器特权提升漏洞 | 重要 | | CVE-2026-69732 | Windows 链接层拓扑发现协议远程代码执行漏洞 | 重要 | | CVE-2026-69734 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-69735 | Windows Broadcast DVR User Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69738 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69739 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-69740 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69741 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69742 | Microsoft Office Publisher 远程代码执行漏洞 | 重要 | | CVE-2026-69744 | Windows Kerberos 拒绝服务漏洞 | 重要 | | CVE-2026-69757 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69758 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69759 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69760 | Windows Kerberos 拒绝服务漏洞 | 重要 | | CVE-2026-69761 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69762 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69764 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69767 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69768 | Windows RNDIS 远程代码执行漏洞 | 重要 | | CVE-2026-69769 | Windows HTTP 打印提供程序远程代码执行漏洞 | 严重 | | CVE-2026-69770 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69771 | Windows 容器管理器服务安全功能绕过漏洞 | 重要 | | CVE-2026-69772 | Windows 网络文件系统远程代码执行漏洞 | 重要 | | CVE-2026-69773 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69775 | Windows DWM 核心库特权提升漏洞 | 重要 | | CVE-2026-69777 | Microsoft DHCP 客户端特权提升漏洞 | 重要 | | CVE-2026-69778 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69779 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69781 | Windows DHCP 客户端拒绝服务漏洞 | 重要 | | CVE-2026-69782 | Windows DNS 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69784 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69785 | Windows 智能卡特权提升漏洞 | 重要 | | CVE-2026-69786 | Windows Text Shaping 远程代码执行漏洞 | 重要 | | CVE-2026-69787 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69790 | Windows 凭据提供程序特权提升漏洞 | 重要 | | CVE-2026-69791 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69792 | Windows Win32K 安全功能绕过漏洞 | 重要 | | CVE-2026-69793 | Windows TCP/IP 安全功能绕过漏洞 | 重要 | | CVE-2026-69794 | Windows 加密文件系统 (EFS) 信息泄露漏洞 | 重要 | | CVE-2026-69797 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69799 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69801 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69803 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69804 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69805 | .NET 特权提升漏洞 | 重要 | | CVE-2026-69806 | .NET 特权提升漏洞 | 重要 | | CVE-2026-69807 | PowerShell 权限提升漏洞 | 重要 | | CVE-2026-69808 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69809 | Windows Active Directory 域服务拒绝服务漏洞 | 重要 | | CVE-2026-69813 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69814 | Windows 凭据提供程序特权提升漏洞 | 重要 | | CVE-2026-69816 | Windows 帐户控制特权提升漏洞 | 重要 | | CVE-2026-69817 | Windows Bluetooth 端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69818 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69819 | RPC 运行时库远程代码执行漏洞 | 重要 | | CVE-2026-69820 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69821 | Active Directory Certificate Services (AD CS) 特权提升 漏洞 | 重要 | | CVE-2026-69822 | Windows Kerberos 特权提升漏洞 | 重要 | | CVE-2026-69824 | Microsoft Standard XPS 远程代码执行漏洞 | 重要 | | CVE-2026-69826 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69827 | Windows DNS 服务器远程执行代码漏洞 | 严重 | | CVE-2026-69829 | Windows Shell 远程执行代码漏洞 | 严重 | | CVE-2026-69832 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69834 | Windows ALPC 特权提升漏洞 | 重要 | | CVE-2026-69838 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69839 | Windows iSCSI 目标服务拒绝服务漏洞 | 重要 | | CVE-2026-69841 | Windows 加密文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69844 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69845 | Windows DHCP 服务器远程执行代码漏洞 | 严重 | | CVE-2026-69846 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69847 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69853 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69854 | Spring Cloud Azure 特权提升 漏洞 | 严重 | | CVE-2026-69857 | Azure Cosmos DB 欺骗漏洞 | 严重 | | CVE-2026-69858 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69859 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69860 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-69862 | Windows 无线广域网服务信息泄露漏洞 | 重要 | | CVE-2026-69864 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69866 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69874 | Windows ALPC 特权提升漏洞 | 严重 | | CVE-2026-69875 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69876 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69878 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69881 | Windows Internet 密钥交换 (IKE) 扩展拒绝服务漏洞 | 重要 | | CVE-2026-69889 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69890 | Windows 虚拟受信任的平台模块特权提升漏洞 | 严重 | | CVE-2026-69891 | Windows Media 特权提升 漏洞 | 重要 | | CVE-2026-69895 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69896 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69900 | Kernel Streaming WOW Thunk 服务驱动程序特权提升漏洞 | 重要 | | CVE-2026-69904 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69906 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69907 | Windows 企业应用管理特权提升漏洞 | 重要 | | CVE-2026-69910 | Windows Hyper-V 远程执行代码漏洞 | 重要 | | CVE-2026-69911 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69921 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69929 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69930 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69989 | Windows DNS 服务器远程执行代码漏洞 | 重要 | | CVE-2026-70019 | Windows 压缩文件夹信息泄露漏洞 | 重要 | | CVE-2026-70065 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-70091 | Windows DNS 拒绝服务漏洞 | 重要 | | CVE-2026-70124 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-70145 | Microsoft Windows Search 组件信息泄露漏洞 | 重要 | | CVE-2026-70178 | Microsoft Fabric 特权提升 漏洞 | 严重 | | CVE-2026-70203 | Windows Media Player Remote Code Execution Vulnerability | 严重 | | CVE-2026-70283 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70289 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70290 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-70296 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-70334 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-70342 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-70351 | Microsoft WebP Image Extension Remote Code Execution Vulnerability | 严重 | | CVE-2026-70352 | Azure AI Language 特权提升漏洞 | 严重 | | CVE-2026-70562 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-70563 | Windows Shell 欺骗漏洞 | 重要 | | CVE-2026-70564 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-70565 | Windows AF_UNIX Socket Provider Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70567 | Windows 显示增强服务特权提升漏洞 | 重要 | | CVE-2026-70568 | Windows Defender 防火墙服务特权提升漏洞 | 重要 | | CVE-2026-70569 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-70570 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 重要 | | CVE-2026-70572 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70573 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70574 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-70575 | Windows Schannel Denial of Service Vulnerability | 重要 | | CVE-2026-70577 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-70578 | Windows Credential Guard Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70579 | Windows Mobile Broadband Information Disclosure Vulnerability | 重要 | | CVE-2026-70581 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70582 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-70583 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70584 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70585 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-70586 | Windows Paint Remote Code Execution Vulnerability | 严重 | | CVE-2026-70587 | Windows Remote Desktop Protocol Information Disclosure Vulnerability | 重要 | | CVE-2026-71328 | .NET 和 Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-71329 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-71330 | NFS ONCRPC XDR Driver 的 Windows 服务信息泄露漏洞 | 重要 | | CVE-2026-71332 | Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71333 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-71334 | Windows NFS Portmapper Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71336 | Windows Work Folder Service Remote Code Execution Vulnerability | 重要 | | CVE-2026-71337 | Windows 存储管理提供程序特权提升漏洞 | 重要 | | CVE-2026-71338 | Windows Failover Cluster Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71339 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-71340 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-71341 | Windows Partition Management Driver Information Disclosure Vulnerability | 重要 | | CVE-2026-71342 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-71343 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-71345 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71348 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71349 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71350 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71351 | Windows 路由和远程访问服务 (RRAS) 特权提升漏洞 | 重要 | | CVE-2026-71352 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-71353 | Windows 路由和远程访问服务 (RRAS) 特权提升漏洞 | 重要 | | CVE-2026-72926 | Windows Internet Connection Sharing (ICS) Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72927 | Winsock Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72928 | Windows DNS Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-72929 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-72930 | Windows 安全套接字隧道协议 (SSTP) 远程代码执行漏洞 | 重要 | | CVE-2026-72931 | Windows 安全套接字隧道协议 (SSTP) 拒绝服务漏洞 | 重要 | | CVE-2026-72932 | Windows Message Queuing Queue Manager Information Disclosure Vulnerability | 重要 | | CVE-2026-72933 | Microsoft WDAC OLE DB provider for SQL Remote Code Execution Vulnerability | 重要 | | CVE-2026-72935 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-72936 | Windows SMB 客户端远程执行代码漏洞 | 重要 | | CVE-2026-72937 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-72938 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72939 | Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability | 重要 | | CVE-2026-72940 | Windows Schannel 远程代码执行漏洞 | 重要 | | CVE-2026-72941 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72942 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-72943 | Windows 部署服务远程代码执行漏洞 | 重要 | | CVE-2026-72944 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-72945 | Windows Task Scheduler Information Disclosure Vulnerability | 重要 | | CVE-2026-72946 | Microsoft 存储端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-72947 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-72948 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-72949 | Windows SMB Server Network Transport Driver (srvnet.sys) Denial of Service Vulnerability | 重要 | | CVE-2026-72950 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-72952 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-72953 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-72954 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-72956 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72957 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-72958 | Windows Credential Guard Elevation of Privilege Vulnerability | 严重 | | CVE-2026-72959 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-72960 | Windows Media Player Remote Code Execution Vulnerability | 严重 | | CVE-2026-72961 | Windows Hyper-V 特权提升漏洞 | 严重 | | CVE-2026-72962 | Windows USB 视频驱动程序特权提升漏洞 | 严重 | | CVE-2026-72963 | Windows Modern Execution Server Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72964 | Windows Internet Connection Sharing (ICS) Tampering Vulnerability | 重要 | | CVE-2026-72965 | Windows WebClient Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72966 | Windows Remote Access Connection Manager Tampering Vulnerability | 重要 | | CVE-2026-72967 | Windows 网络连接 Broker 权限提升漏洞 | 重要 | | CVE-2026-72972 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-72973 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-72974 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-72975 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72976 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-72977 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72978 | Active Directory Federation Services (AD FS) 拒绝服务 漏洞 | 重要 | | CVE-2026-72979 | Windows DHCP Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-72980 | Windows Hello 安全功能绕过漏洞 | 严重 | | CVE-2026-72981 | IP Helper 远程代码执行漏洞 | 严重 | | CVE-2026-72982 | Windows Netlogon 服务 远程代码执行漏洞 | 严重 | | CVE-2026-72983 | Internet 连接共享 (ICS) 远程执行代码漏洞 | 严重 | | CVE-2026-72985 | 卷影复制特权提升漏洞 | 重要 | | CVE-2026-72986 | Graphic Fonts Remote Code Execution Vulnerability | 严重 | | CVE-2026-72987 | Windows DNS 远程代码执行漏洞 | 严重 | | CVE-2026-72988 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72989 | Windows 故障转移群集 信息泄露 漏洞 | 重要 | | CVE-2026-72990 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72991 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72992 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72993 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72994 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72995 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72996 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72997 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72999 | Windows USB 集线器驱动程序特权提升漏洞 | 重要 | | CVE-2026-73000 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73001 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73002 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73003 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-73004 | Windows Autopilot 篡改漏洞 | 重要 | | CVE-2026-73005 | Windows 身份验证 方法 特权提升 漏洞 | 重要 | | CVE-2026-73006 | DirectWrite 远程执行代码漏洞 | 严重 | | CVE-2026-73007 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73008 | Windows Biometric Service 信息泄露 漏洞 | 重要 | | CVE-2026-73009 | Windows 安全套接字隧道协议 (SSTP) 远程代码执行漏洞 | 严重 | | CVE-2026-73010 | Microsoft 故障转移群集远程代码执行漏洞 | 严重 | | CVE-2026-73011 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73012 | Windows 管理服务特权提升漏洞 | 重要 | | CVE-2026-73013 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-73014 | Data Sharing Service Client 特权提升 漏洞 | 重要 | | CVE-2026-73015 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73016 | DirectWrite 远程执行代码漏洞 | 重要 | | CVE-2026-73017 | 图形内核远程代码执行漏洞 | 严重 | | CVE-2026-73018 | Graphic Fonts Remote Code Execution Vulnerability | 严重 | | CVE-2026-73019 | UrlMon 安全功能绕过 漏洞 | 重要 | | CVE-2026-73020 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73021 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73022 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-73023 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-73024 | Windows Services for NFS ONCRPC XDR 驱动程序 特权提升 漏洞 | 重要 | | CVE-2026-73025 | Windows iSCSI 安全功能绕过漏洞 | 重要 | | CVE-2026-73026 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73028 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-73029 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-77480 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77481 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77482 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77483 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77484 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77485 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77486 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77487 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77488 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-77489 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-77491 | Windows GDI 信息泄露漏洞 | 重要 | | CVE-2026-77492 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-77493 | Windows 图形组件远程执行代码漏洞 | 严重 | | CVE-2026-77494 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77495 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-77498 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77499 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77500 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-77501 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77502 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77503 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-77504 | Microsoft Office Word 远程代码执行漏洞 | 严重 | | CVE-2026-77505 | Windows DNS 服务器远程执行代码漏洞 | 严重 | | CVE-2026-77886 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77887 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-77888 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77889 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77890 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77891 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-77892 | Windows 引导管理器特权提升漏洞 | 重要 | | CVE-2026-77893 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77894 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-77895 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77896 | Windows Remote Desktop 客户端 拒绝服务 漏洞 | 重要 | | CVE-2026-77897 | Microsoft Power Automate Desktop 特权提升漏洞 | 重要 | | CVE-2026-77898 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-77899 | Windows Security Center Elevation of Privilege Vulnerability | 重要 | | CVE-2026-77901 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-77904 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-77905 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-77906 | Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-77907 | Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-77908 | Microsoft Dynamics 365(本地)远程执行代码漏洞 | 重要 | | CVE-2026-77909 | Azure CycleCloud 信息泄露漏洞 | 重要 | | CVE-2026-77911 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78439 | Microsoft Office 图形组件远程代码执行漏洞 | 严重 | | CVE-2026-78441 | Windows OLE DB 信息泄露漏洞 | 重要 | | CVE-2026-78442 | Windows OLE DB 远程代码执行漏洞 | 重要 | | CVE-2026-78444 | Microsoft 故障转移群集远程代码执行漏洞 | 严重 | | CVE-2026-78445 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-78446 | Windows 分布式文件系统 (DFS) 拒绝服务 漏洞 | 重要 | | CVE-2026-78447 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-78448 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-78449 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-78450 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-78451 | Microsoft Windows SCSI 类系统文件 特权提升 漏洞 | 重要 | | CVE-2026-78452 | Microsoft Windows SCSI 类系统文件信息泄露漏洞 | 重要 | | CVE-2026-78453 | Microsoft Windows SCSI 类系统文件信息泄露漏洞 | 重要 | | CVE-2026-78454 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-78455 | Xbox 信息泄露 漏洞 | 重要 | | CVE-2026-78456 | SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-78457 | Windows 安全状况服务 特权提升 漏洞 | 重要 | | CVE-2026-78461 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-78462 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-78463 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-78464 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-78502 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78503 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78504 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78505 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-78506 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78507 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78508 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-78509 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78510 | Microsoft Word 远程执行代码漏洞 | 严重 | | CVE-2026-78511 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78512 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78513 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-78514 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78515 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-78516 | Windows Storage 信息泄露漏洞 | 重要 | | CVE-2026-78517 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78518 | Microsoft Office Excel 远程代码执行漏洞 | 重要 | | CVE-2026-78519 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78520 | Microsoft Office Outlook 信息泄露 漏洞 | 严重 | | CVE-2026-78521 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78522 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78523 | Windows DNS 服务器拒绝服务漏洞 | 重要 | | CVE-2026-78524 | Microsoft Office 远程执行代码漏洞 | 重要 | | CVE-2026-78525 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78526 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80073 | Microsoft Office Outlook 信息泄露 漏洞 | 重要 | | CVE-2026-80074 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-80075 | Windows Work Folders 特权提升 漏洞 | 重要 | | CVE-2026-80076 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80077 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-80078 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80079 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80080 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80081 | Microsoft Office PowerPoint 远程代码执行漏洞 | 重要 | | CVE-2026-80082 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80083 | Windows Hyper-V 远程执行代码漏洞 | 严重 | | CVE-2026-80084 | Microsoft Office Outlook 信息泄露 漏洞 | 重要 | | CVE-2026-80085 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80086 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-80087 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80088 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80089 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80090 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80091 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80093 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-80096 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-80097 | Microsoft Authenticator 特权提升漏洞 | 重要 | | CVE-2026-80098 | Copilot Studio 特权提升漏洞 | 严重 | | CVE-2026-81349 | Azure HDInsight Ambari 特权提升 漏洞 | 重要 | | CVE-2026-81352 | Web Media 扩展程序远程执行代码漏洞 | 严重 | | CVE-2026-81353 | HEIF Image 扩展程序远程执行代码漏洞 | 重要 | | CVE-2026-81354 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-81355 | Virtual Hard Disk (VHD) Miniport 驱动程序 远程代码执行 漏洞 | 严重 | | CVE-2026-81356 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81357 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81376 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81377 | Visual Studio Code 篡改漏洞 | 重要 | | CVE-2026-81378 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81379 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81380 | GitHub Copilot 及 Visual Studio Code 信息泄露漏洞 | 重要 | | CVE-2026-81381 | GitHub Copilot 及 Visual Studio Code 信息泄露漏洞 | 重要 | | CVE-2026-81383 | Visual Studio Code 信息泄露 漏洞 | 重要 | | CVE-2026-81385 | Microsoft Office Publisher 远程代码执行漏洞 | 重要 | | CVE-2026-81386 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81387 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81388 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81389 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81390 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81391 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81392 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81393 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81394 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81395 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81396 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81397 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81398 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81399 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81400 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81401 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81947 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81948 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81949 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81950 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81951 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81952 | Microsoft Word 远程执行代码漏洞 | 严重 | | CVE-2026-81953 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81954 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81955 | Windows 图形组件远程执行代码漏洞 | 严重 | | CVE-2026-81956 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81957 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81958 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81959 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81960 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81963 | Windows Update Stack 特权提升漏洞 | 重要 | | CVE-2026-83498 | Windows 基于虚拟化的安全性 (VBS) Enclave 特权提升漏洞 | 严重 | | CVE-2026-83501 | Windows 基于虚拟化的安全性 (VBS) 信息泄露漏洞 | 严重 | | CVE-2026-83711 | Microsoft Azure Active Directory B2C 特权提升漏洞 | 严重 | | CVE-2026-83939 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-83940 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-83941 | Entra ID 特权提升漏洞 | 严重 | | CVE-2026-83942 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-83948 | Microsoft Azure CLI 远程代码执行漏洞 | 重要 | | CVE-2026-83949 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-83951 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-83952 | Windows Resilient 文件系统 (ReFS) 特权提升漏洞 | 重要 | | CVE-2026-83954 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83955 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83967 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83968 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83969 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83970 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83971 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83972 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83973 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83974 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83975 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83976 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83977 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83978 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83979 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83980 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83981 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83982 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83983 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83985 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83986 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83987 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83988 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83989 | Windows Services for NFS ONCRPC XDR 驱动程序 拒绝服务漏洞 | 重要 | | CVE-2026-83990 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-83991 | Windows 云文件微型筛选驱动程序 篡改 漏洞 | 重要 | | CVE-2026-83992 | Windows Imaging Component Remote Code Execution Vulnerability | 重要 | | CVE-2026-83995 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-83996 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-83997 | Windows Message Queuing 远程代码执行漏洞 | 重要 | | CVE-2026-83998 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-83999 | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-84000 | Microsoft 图形组件 远程代码执行 漏洞 | 重要 | | CVE-2026-84001 | Windows 密钥分发中心 拒绝服务 漏洞 | 重要 | | CVE-2026-84003 | Microsoft Authentication Library (MSAL) 适用于 Node.js 欺骗漏洞 | 重要 | | CVE-2026-85360 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-85875 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-85877 | Windows 打印后台处理程序远程执行代码漏洞 | 重要 | | CVE-2026-85880 | Windows 高级本地过程调用 (ALPC) 特权提升漏洞 | 重要 |

二、影响范围

受影响的产品/功能/服务/组件包括:

.NET

.NET and Visual Studio

Active Directory Certificate Services (AD CS)

Active Directory Domain Services

Active Directory Federation Services (AD FS)

ASP.NET Core

Audio Video Control Transport Protocol

Azure AI Language

Azure Arc

Azure Cosmos DB

Azure CycleCloud

Azure HDInsights

BranchCache

Connected Devices Platform Service (Cdpsvc)

Copilot Studio

Data Sharing Service Client

Entra ID

GitHub Copilot and Visual Studio Code

Graphic Fonts

HID class driver

Internet Storage Name Service

IP Helper

Kernel Streaming WOW Thunk Service Driver

Microsoft Account

Microsoft Authentication Library (MSAL) for Node.js

Microsoft Authenticator

Microsoft Azure Active Directory B2C

Microsoft Azure CLI

Microsoft COM for Windows

Microsoft Discovery Studio

Microsoft Dynamics 365

Microsoft Entra ID

Microsoft Exchange Server

Microsoft Fabric

Microsoft Graphics Component

Microsoft Install Service

Microsoft JScript

Microsoft Local Security Authority Server (lsasrv)

Microsoft Office

Microsoft Office Access

Microsoft Office Excel

Microsoft Office Outlook

Microsoft Office PowerPoint

Microsoft Office Publisher

Microsoft Office SharePoint

Microsoft Office Word

Microsoft Standard XPS

Microsoft Teams for Android

Microsoft Trace Data Helper

Microsoft UxTheme Library (uxtheme.dll)

Microsoft WDAC OLE DB provider for SQL

Microsoft WebP Image Extension

Microsoft Windows Codecs Library

Microsoft Windows Media Foundation

Microsoft Windows PDF

Microsoft Windows SCSI Class System File

Microsoft Windows Search Component

Microsoft Windows Speech

OpenSSH for Windows

Power Automate

Push Message Routing Service

Reliable Multicast Transport Driver (RMCAST)

Remote Desktop Client

Remote Desktop Gateway Service

Role: DNS Server

Role: Windows Fax Service

RPC Runtime

Skype for Business

Spring Cloud Azure

SQL Server

Storage Port Driver

Telnet Client

Virtual Hard Disk (VHD) Miniport Driver

Visual Studio

Visual Studio Code

Volume Manager Driver

Windows Accounts Control

Windows AF_UNIX Socket Provider

Windows ALPC

Windows Ancillary Function Driver for WinSock

Windows Audio Service

Windows Authentication Methods

Windows Autopilot

Windows Bind Filter Driver

Windows Biometric Service

Windows BitLocker

Windows Bluetooth Port Driver

Windows Bluetooth Service

Windows Boot Manager

Windows Broadcast DVR User Service

Windows Broker Infrastructure Service

Windows Camera Frame Server Monitor

Windows CD-ROM Driver

Windows Cloud Files Mini Filter Driver

Windows Compressed Folder

Windows Connected User Experiences and Telemetry

Windows Container Manager Service

Windows Core Messaging

Windows Credential Guard

Windows Credential Providers

Windows DCOM Server

Windows Defender Firewall Service

Windows Deployment Services

Windows Device Association Broker service

Windows Device Association Service

Windows Device Health Attestation (DHA)

Windows Devices Human Interface

Windows DHCP Client

Windows DHCP Server

Windows Direct Show

Windows Display Enhancement Service

Windows Distributed File System (DFS)

Windows DNS

Windows DWM Core Library

Windows Embedded Mode Service

Windows Encrypting File System (EFS)

Windows Enterprise App Management

Windows Error Reporting

Windows Event Logging Service

Windows exFAT File System

Windows Failover Cluster

Windows Fast FAT Driver

Windows File History Service

Windows GDI

Windows GDI+

Windows Graphics Kernel

Windows Group Policy

Windows Hello

Windows Host Guardian Service

Windows HTTP Print Provider

Windows HTTP.sys

Windows Hyper-V

Windows IKE Extension

Windows Image Acquisition

Windows Imaging Component

Windows Installer

Windows Internet Connection Sharing (ICS)

Windows IP Address Management (IPAM) Service

Windows iSCSI

Windows iSCSI Target Service

Windows Kerberos

Windows Kernel

Windows Kernel Mode Driver

Windows Key Distribution Center

Windows LDAP – Lightweight Directory Access Protocol

Windows License Manager

Windows Link Layer Topology Discovery Protocol

Windows Management Instrumentation

Windows Management Services

Windows Media

Windows Media Player

Windows Message Queuing

Windows Message Queuing Queue Manager

Windows Microsoft DirectMusic

Windows MIDI Service Module

Windows Mobile Broadband

Windows Modern Device Management (MDM)

Windows Modern Execution Server

Windows NDIS

Windows Netlogon

Windows Network Connection Broker

Windows Network File System

Windows NFS Portmapper

Windows Notification

Windows NTFS

Windows OLE DB

Windows Online Certificate Status Protocol (OCSP)

Windows Overlay Filter

Windows Paint

Windows Partition Management Driver

Windows Performance Monitor

Windows Power Dependency Coordinator

Windows PowerShell

Windows Print Spooler Components

Windows PrintWorkflowUserSvc

Windows Program Compatibility Assistant Service

Windows Push Notifications

Windows Raw Image Extension

Windows RDP Client

Windows Registry

Windows Remote Access Connection Manager

Windows Remote Desktop

Windows Remote Desktop Licensing Service

Windows Remote Desktop Protocol

Windows Remote Desktop Services

Windows Resilient File System (ReFS)

Windows Resilient File System (ReFS) Deduplication Service

Windows RNDIS

Windows Routing and Remote Access Service (RRAS)

Windows Schannel

Windows Secure Boot

Windows Secure Kernel Mode

Windows Secure Socket Tunneling Protocol (SSTP)

Windows Security Center

Windows Security Health Service

Windows Server

Windows Services for NFS ONCRPC XDR Driver

Windows Setup Files Cleanup

Windows Shell

Windows Smart Card

Windows SMB Client

Windows SMB Server

Windows SMB Server Network Transport Driver (srvnet.sys)

Windows Spaceport.sys

Windows Storage

Windows Storage Management Provider

Windows Storage Port Driver

Windows Storage Spaces Controller

Windows Task Scheduler

Windows TCP/IP

Windows Text Shaping

Windows Universal Disk Format File System Driver (UDFS)

Windows Universal Plug and Play (UPnP) Device Host

Windows Update Stack

Windows URL Moniker

Windows USB Audio Class driver (usbaudio.sys)

Windows USB Driver

Windows USB Hub Driver

Windows USB Mass Storage Class Driver

Windows USB Video Driver

Windows VHD miniport driver

Windows Virtual Trusted Platform Module

Windows Virtualization-Based Security (VBS) Enclave

Windows VOLSNAP.SYS

Windows Volume Manager Extension Driver

Windows Volume Shadow Copy

Windows Web Platform Storage

Windows WebClient Service

Windows Win32 Kernel Subsystem

Windows Win32K

Windows Wireless Networking

Windows Wireless Wide Area Network Service

Windows Work Folder Service

Windows Work Folders

Winsock

Xbox

XBox Gaming Services

安全措施

3.1 升级版本

目前微软已发布相关安全更新,建议受影响的用户尽快修复。

(一)Windows Update自动更新

Microsoft Update默认启用,当系统检测到可用更新时,将会自动下载更新并在下一次启动时安装。也可选择通过以下步骤手动进行更新:

1、点击“开始菜单”或按Windows快捷键,点击进入“设置”

2、选择“更新和安全”,进入“Windows更新”(Windows 8、Windows 8.1、Windows Server 2012以及Windows Server 2012 R2可通过控制面板进入“Windows更新”,具体步骤为“控制面板”->“系统和安全”->“Windows更新”)

3、选择“检查更新”,等待系统自动检查并下载可用更新。

4、更新完成后重启计算机,可通过进入“Windows更新”->“查看更新历史记录”查看是否成功安装了更新。对于没有成功安装的更新,可以点击该更新名称进入微软官方更新描述链接,点击最新的SSU名称并在新链接中点击“Microsoft 更新目录”,然后在新链接中选择适用于目标系统的补丁进行下载并安装。

(二)手动安装更新

Microsoft官方下载相应补丁进行更新。

2026年9月安全更新下载链接:

https://msrc.microsoft.com/update-guide/releaseNote/2026-Sep

补丁下载示例(参考):

1.打开上述下载链接,点击漏洞列表中要修复的CVE链接。

例1:微软漏洞列表(示例)

2.在微软公告页面底部左侧【产品】列选择相应的系统类型,点击右侧【下载】列打开补丁下载链接。

例2:CVE-2022-21989补丁下载示例

3.点击【安全更新】,打开补丁下载页面,下载相应补丁并进行安装。

例3:补丁下载界面

4.安装完成后重启计算机。

3.2临时措施

暂无。

3.3 通用建议

定期更新系统补丁,减少系统漏洞,提升服务器的安全性。

加强系统和网络的访问控制,修改防火墙策略,关闭非必要的应用端口或服务,减少将危险服务(如SSH、RDP等)暴露到公网,减少攻击面。

使用企业级安全产品,提升企业的网络安全性能。

加强系统用户和权限管理,启用多因素认证机制和最小权限原则,用户和软件权限应保持在最低限度。

启用强密码策略并设置为定期修改。

3.4参考链接

https://msrc.microsoft.com/update-guide/releaseNote/2026-Sep


免责声明:

本文所载程序、技术方法仅面向合法合规的安全研究与教学场景,旨在提升网络安全防护能力,具有明确的技术研究属性。

任何单位或个人未经授权,将本文内容用于攻击、破坏等非法用途的,由此引发的全部法律责任、民事赔偿及连带责任,均由行为人独立承担,本站不承担任何连带责任。

本站内容均为技术交流与知识分享目的发布,若存在版权侵权或其他异议,请通过邮件联系处理,具体联系方式可点击页面上方的联系我

本文转载自:启明星辰安全简讯 《【漏洞通告】微软9月多个安全漏洞》

评论:0   参与:  0