Aggregator
CVE-2026-24290 | Microsoft Windows up to Server 2025 Projected File System access control
Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation
Zoom has released four security bulletins on March 10, 2026, disclosing multiple vulnerabilities across its Windows-based client suite. The flaws, ranging from High to Critical severity, could allow attackers to escalate privileges on affected systems, with one critical flaw exploitable by unauthenticated remote attackers with no prior system access. The most severe vulnerability, tracked as […]
The post Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation appeared first on Cyber Security News.
CVE-2026-24289 | Microsoft Windows up to Server 2025 Kernel use after free
CVE-2026-24288 | Microsoft Windows 10 21H2/10 22H2 Mobile Broadband Driver heap-based overflow
CVE-2026-24287 | Microsoft Windows up to Server 2025 Kernel file inclusion
CVE-2026-24282 | Microsoft Windows up to 11 26H1 Push Message Routing Service out-of-bounds
CVE-2026-23674 | Microsoft Windows up to Server 2025 MapUrlToZone resolution of path
CVE-2026-23673 | Microsoft Windows up to Server 2025 Resilient File System out-of-bounds
CVE-2026-23672 | Microsoft Windows up to Server 2025 Universal Disk Format File System Driver out-of-bounds
CVE-2026-23671 | Microsoft Windows up to Server 2025 Bluetooth RFCOM Protocol Driver race condition
CVE-2026-23668 | Microsoft Windows up to Server 2022 23H2 Graphics race condition
CVE-2026-23667 | Microsoft Windows up to 11 26H1 Broadcast DVR use after free
CVE-2026-23665 | Microsoft Azure Linux Virtual Machines with Azure Diagnostics extension heap-based overflow
CVE-2026-23664 | Microsoft Azure IoT Explorer communication channel to intended endpoints
CVE-2026-23662 | Microsoft Azure IoT Explorer missing authentication
CVE-2026-23661 | Microsoft Azure IoT Explorer cleartext transmission
CVE-2026-23660 | Microsoft Windows Admin Center in Azure Portal access control
Fortinet FortiManager fgtupdates Vulnerability Allows Attackers to Execute Malicious Commands
Fortinet has disclosed a high-severity stack-based buffer overflow vulnerability in its FortiManager platform that could allow remote unauthenticated attackers to execute unauthorized commands. Tracked as CVE-2025-54820 and assigned a CVSSv3 score of 7.0, the flaw poses a significant risk to enterprise network management environments running affected versions of FortiManager. The vulnerability resides in the fgtupdates […]
The post Fortinet FortiManager fgtupdates Vulnerability Allows Attackers to Execute Malicious Commands appeared first on Cyber Security News.