文章总结: 微软发布2026年9月安全更新,修复973个漏洞,含113个严重级别和860个重要级别漏洞,其中60个被标记为更可能被利用。漏洞涵盖特权提升、远程代码执行、信息泄露等多种类型,涉及Windows内核、DNS、远程桌面服务等组件。建议优先修复高风险漏洞,降低潜在安全威胁。 综合评分: 85 文章分类: 漏洞预警,漏洞分析,安全运营,解决方案
【漏洞通告】微软9月多个安全漏洞
启明星辰安全简讯
2026年9月9日 16:04 北京
在小说阅读器读本章
去阅读
在公众号小说中沉浸阅读
一、漏洞概述
2026年9月9日,启明星辰安全应急响应中心(VSRC)监测到微软发布了9月安全更新,本次更新修复了973个漏洞,涵盖特权提升、远程代码执行、信息泄露等多种漏洞类型。漏洞级别分布如下:113个严重级别漏洞,860个重要级别漏洞(漏洞级别依据微软官方数据)。
其中,60个漏洞被微软标记为“更可能被利用”及“检测利用情形”,表明这些漏洞存在较高的利用风险,建议优先修复以降低潜在安全威胁。
| | | | | — | — | — | | CVE-ID | CVE 标题 | 漏洞级别 | | CVE-2026-68846 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68876 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68880 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-68884 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69274 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69277 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69301 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69305 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69310 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-69337 | Windows 注册表特权提升漏洞 | 重要 | | CVE-2026-69364 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69366 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69385 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69391 | Windows 代理基础结构服务特权提升漏洞 | 重要 | | CVE-2026-69406 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69436 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69450 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69451 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-69459 | Windows Power Dependency Coordinator 特权提升漏洞 | 重要 | | CVE-2026-69460 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69466 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69467 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-69473 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69478 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69498 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69525 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69541 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69585 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69600 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69605 | Microsoft 安装服务特权提升漏洞 | 重要 | | CVE-2026-69623 | Windows HTTP 打印提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69676 | Windows Kerberos 远程代码执行漏洞 | 严重 | | CVE-2026-69714 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69723 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69730 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69757 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69777 | Microsoft DHCP 客户端特权提升漏洞 | 重要 | | CVE-2026-69779 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69832 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69854 | Spring Cloud Azure 特权提升 漏洞 | 严重 | | CVE-2026-69857 | Azure Cosmos DB 欺骗漏洞 | 严重 | | CVE-2026-69911 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69921 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-70289 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70342 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-70562 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-70583 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70585 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-71340 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-71343 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-72936 | Windows SMB 客户端远程执行代码漏洞 | 重要 | | CVE-2026-72940 | Windows Schannel 远程代码执行漏洞 | 重要 | | CVE-2026-72957 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-77500 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-78454 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-80093 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-81963 | Windows Update Stack 特权提升漏洞 | 重要 | | CVE-2026-83501 | Windows 基于虚拟化的安全性 (VBS) 信息泄露漏洞 | 严重 | | CVE-2026-85880 | Windows 高级本地过程调用 (ALPC) 特权提升漏洞 | 重要 |
微软9月更新修复的完整漏洞列表如下:
| | | | | — | — | — | | CVE-ID | CVE 标题 | 漏洞级别 | | CVE-2026-47297 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-50349 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-55007 | Microsoft Exchange Server 远程执行代码漏洞 | 重要 | | CVE-2026-56172 | Windows VHD 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-56177 | Windows Server 特权提升漏洞 | 重要 | | CVE-2026-56198 | Microsoft Trace Data Helper Elevation of Privilege Vulnerability | 重要 | | CVE-2026-57098 | Microsoft Remote Desktop 适用于 Windows 的应用 信息泄露 漏洞 | 重要 | | CVE-2026-57099 | ASP.NET Core 拒绝服务漏洞 | 重要 | | CVE-2026-58599 | HEVC Video 扩展程序远程执行代码漏洞 | 严重 | | CVE-2026-58600 | HEVC 视频扩展特权提升漏洞 | 重要 | | CVE-2026-58611 | Xbox 游戏服务特权提升漏洞 | 重要 | | CVE-2026-58649 | .NET 信息泄漏漏洞 | 重要 | | CVE-2026-62694 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-62697 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-62706 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-62744 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-62759 | Windows 网络登录 (Netlogon) 欺骗漏洞 | 重要 | | CVE-2026-62762 | Windows Active Directory 域服务拒绝服务漏洞 | 重要 | | CVE-2026-62801 | Microsoft PowerShell 安全功能绕过漏洞 | 重要 | | CVE-2026-62804 | Microsoft Word 远程执行代码漏洞 | 重要 | | CVE-2026-62810 | Active Directory Certificate Services (AD CS) 特权提升 漏洞 | 重要 | | CVE-2026-62813 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-62895 | Azure Arc SQL Server 扩展 特权提升 漏洞 | 重要 | | CVE-2026-62906 | Microsoft Discovery Studio 信息泄露 漏洞 | 严重 | | CVE-2026-62916 | Microsoft Entra ID 特权提升漏洞 | 严重 | | CVE-2026-63523 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-64918 | Microsoft Office 欺骗漏洞 | 重要 | | CVE-2026-65669 | Microsoft SQL Server 特权提升漏洞 | 严重 | | CVE-2026-65772 | Microsoft Dynamics 365(本地)远程执行代码漏洞 | 严重 | | CVE-2026-65812 | Android 版 Microsoft Teams 信息披露漏洞 | 重要 | | CVE-2026-65818 | Power Automate 特权提升漏洞 | 严重 | | CVE-2026-66302 | Skype for Business 远程执行代码漏洞 | 严重 | | CVE-2026-66303 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66304 | Skype for Business 信息泄漏漏洞 | 重要 | | CVE-2026-66305 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-66306 | Skype for Business 信息泄漏漏洞 | 重要 | | CVE-2026-66307 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66308 | Skype for Business 和 Lync 拒绝服务漏洞 | 重要 | | CVE-2026-66814 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66816 | Microsoft SQL Server 安全功能绕过漏洞 | 重要 | | CVE-2026-66818 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66819 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-66820 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-67368 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67369 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67370 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67373 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67376 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67378 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67379 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67380 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67381 | Microsoft SQL Server 特权提升漏洞 | 重要 | | CVE-2026-67383 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67384 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67385 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67386 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67388 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67389 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67390 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67393 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67624 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67629 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67630 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67631 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67633 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67636 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67638 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67639 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67641 | Microsoft SQL Server 拒绝服务漏洞 | 重要 | | CVE-2026-67642 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-67643 | Microsoft SQL Server 远程执行代码漏洞 | 严重 | | CVE-2026-67645 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-67648 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68775 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68776 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68777 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68778 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68779 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68780 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68781 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68784 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-68785 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68786 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68787 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-68824 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-68825 | Windows 绑定筛选器驱动程序特权提升漏洞 | 重要 | | CVE-2026-68827 | Windows GDI+ 特权提升漏洞 | 重要 | | CVE-2026-68828 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-68830 | Windows 通用即插即用 (UPnP) 设备主机信息泄露漏洞 | 重要 | | CVE-2026-68831 | Windows Defender 防火墙服务信息泄露漏洞 | 重要 | | CVE-2026-68832 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68833 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-68834 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68835 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-68837 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-68838 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68839 | Windows USB 大容量存储类驱动远程代码执行漏洞 | 重要 | | CVE-2026-68840 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-68841 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-68842 | Windows MIDI 服务模块信息泄露漏洞 | 重要 | | CVE-2026-68843 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-68844 | Windows Storage Spaces Controller Remote Code Execution Vulnerability | 重要 | | CVE-2026-68845 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68846 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68847 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-68848 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-68849 | Windows 蓝牙端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-68850 | Microsoft 帐户特权提升漏洞 | 重要 | | CVE-2026-68851 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-68852 | Microsoft 帐户信息泄露漏洞 | 重要 | | CVE-2026-68873 | Windows 程序兼容性助手服务信息泄露漏洞 | 重要 | | CVE-2026-68874 | Windows 程序兼容性助手服务信息泄露漏洞 | 重要 | | CVE-2026-68875 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-68876 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-68877 | Windows Storage Spaces Controller Remote Code Execution Vulnerability | 重要 | | CVE-2026-68878 | Windows Fast FAT 驱动特权提升漏洞 | 重要 | | CVE-2026-68880 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-68881 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-68884 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-68885 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68886 | Windows 网络连接代理信息泄露漏洞 | 重要 | | CVE-2026-68887 | Windows Message Queuing Queue Manager Denial of Service Vulnerability | 重要 | | CVE-2026-68888 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68889 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68890 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68891 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-68892 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68893 | 远程桌面授权服务特权提升漏洞 | 重要 | | CVE-2026-68894 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-68895 | Internet 存储名称服务信息泄露漏洞 | 重要 | | CVE-2026-68896 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-68897 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-68898 | Windows iSCSI 拒绝服务漏洞 | 重要 | | CVE-2026-69265 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69266 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69267 | Windows 已连接的用户体验和遥测信息泄露漏洞 | 重要 | | CVE-2026-69268 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69269 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69270 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69271 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69272 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69273 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69274 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69275 | Kernel Streaming WOW Thunk 服务驱动程序特权提升漏洞 | 重要 | | CVE-2026-69276 | Microsoft UxTheme 主题库 (uxtheme.dll) 远程代码执行漏洞 | 重要 | | CVE-2026-69277 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69279 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-69280 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-69281 | Windows 许可证管理器特权提升漏洞 | 重要 | | CVE-2026-69282 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69283 | Windows CD-ROM 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69284 | Windows DCOM 服务器特权提升漏洞 | 重要 | | CVE-2026-69285 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-69286 | Windows USB 音频类驱动器信息披露漏洞 | 重要 | | CVE-2026-69287 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-69288 | Windows GDI+ 信息泄露漏洞 | 重要 | | CVE-2026-69289 | Windows 安装程序文件清理特权提升漏洞 | 重要 | | CVE-2026-69290 | Windows 储存空间控件特权提升漏洞 | 重要 | | CVE-2026-69291 | Windows 卷管理器扩展驱动程序 远程代码执行漏洞 | 重要 | | CVE-2026-69292 | 远程桌面网关服务特权提升漏洞 | 重要 | | CVE-2026-69293 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69294 | 适用于Windows 的 Microsoft COM 信息泄露漏洞 | 重要 | | CVE-2026-69295 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69296 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69297 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69298 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69299 | 用于Windows 的 Microsoft COM 特权提升漏洞 | 重要 | | CVE-2026-69300 | Windows 推送通知特权提升漏洞 | 重要 | | CVE-2026-69301 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69303 | 推送消息路由服务信息泄露漏洞 | 重要 | | CVE-2026-69304 | ASP.NET Core 拒绝服务漏洞 | 重要 | | CVE-2026-69305 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69307 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69308 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69309 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69310 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-69311 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69312 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69313 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69314 | Windows 设备关联中转站服务特权提升漏洞 | 重要 | | CVE-2026-69315 | Windows 许可证管理器信息泄露漏洞 | 重要 | | CVE-2026-69316 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69317 | Windows 远程桌面客户端信息泄露漏洞 | 重要 | | CVE-2026-69318 | Windows 成像组件信息泄露漏洞 | 重要 | | CVE-2026-69319 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69321 | Windows 电源依赖协调器篡改漏洞 | 重要 | | CVE-2026-69322 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69323 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69324 | Windows 性能监视器特权提升漏洞 | 重要 | | CVE-2026-69325 | Microsoft JScript 脚本引擎远程代码执行漏洞 | 重要 | | CVE-2026-69328 | Windows 存储特权提升漏洞 | 重要 | | CVE-2026-69329 | BranchCache 拒绝服务漏洞 | 重要 | | CVE-2026-69331 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-69332 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69333 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69334 | Windows 卷管理器扩展驱动程序 远程代码执行漏洞 | 重要 | | CVE-2026-69335 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69336 | Microsoft 标准 XPS 特权提升漏洞 | 重要 | | CVE-2026-69337 | Windows 注册表特权提升漏洞 | 重要 | | CVE-2026-69338 | 远程桌面网关服务特权提升漏洞 | 重要 | | CVE-2026-69339 | Windows MIDI 服务模块信息泄露漏洞 | 重要 | | CVE-2026-69340 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69341 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69342 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69343 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69344 | Windows 打印后台处理程序组件信息泄露漏洞 | 重要 | | CVE-2026-69345 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69346 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69347 | Windows 快速 FAT 文件系统驱动远程代码执行漏洞 | 重要 | | CVE-2026-69348 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69349 | Windows Management Instrumentation (WMI) 信息泄露漏洞 | 重要 | | CVE-2026-69350 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69351 | Windows 通用即插即用 (UPnP) 设备主机信息泄露漏洞 | 重要 | | CVE-2026-69352 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69353 | Windows 文本整形功能信息泄露漏洞 | 重要 | | CVE-2026-69355 | Microsoft Exchange Server 远程执行代码漏洞 | 重要 | | CVE-2026-69356 | Microsoft Exchange Server 欺骗漏洞 | 重要 | | CVE-2026-69357 | Windows NDIS 特权提升漏洞 | 重要 | | CVE-2026-69358 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-69359 | Active Directory Domain Services Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69360 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69361 | Microsoft Exchange Server 欺骗漏洞 | 重要 | | CVE-2026-69362 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69364 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69365 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69366 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69367 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69368 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69369 | Windows DNS 信息泄露漏洞 | 重要 | | CVE-2026-69371 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69372 | Windows网络文件系统拒绝服务漏洞 | 重要 | | CVE-2026-69373 | Windows 覆盖筛选器特权提升漏洞 | 重要 | | CVE-2026-69374 | Windows SMB 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69375 | Microsoft Exchange Server 篡改漏洞 | 重要 | | CVE-2026-69376 | Microsoft 标准 XPS 信息泄露漏洞 | 重要 | | CVE-2026-69377 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69378 | Microsoft Exchange Server 拒绝服务漏洞 | 重要 | | CVE-2026-69379 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69380 | Microsoft Exchange Server 特权提升漏洞 | 重要 | | CVE-2026-69381 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-69382 | Microsoft Exchange Server Information Disclosure Vulnerability | 重要 | | CVE-2026-69383 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69384 | 虚拟硬盘(VHD) 微型端口驱动拒绝服务漏洞 | 重要 | | CVE-2026-69385 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69386 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69388 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69389 | Windows 存储管理提供程序特权提升漏洞 | 重要 | | CVE-2026-69390 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69391 | Windows 代理基础结构服务特权提升漏洞 | 重要 | | CVE-2026-69392 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69393 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69394 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69395 | Active Directory Certificate Services (AD CS) Information Disclosure Vulnerability | 重要 | | CVE-2026-69396 | Windows NDIS 特权提升漏洞 | 重要 | | CVE-2026-69397 | Microsoft OpenSSH for Windows 远程代码执行漏洞 | 重要 | | CVE-2026-69398 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69401 | 音频视频控制传输协议特权提升漏洞 | 重要 | | CVE-2026-69402 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69403 | Windows SMB 服务器信息泄露漏洞 | 重要 | | CVE-2026-69404 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69405 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69406 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69407 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69408 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69409 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69410 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69412 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69413 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69415 | Windows DHCP 服务器特权提升漏洞 | 重要 | | CVE-2026-69416 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69417 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69418 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69420 | Microsoft VOLSNAP.SYS 特权提升漏洞 | 重要 | | CVE-2026-69421 | Windows 内核模式驱动程序特权提升漏洞 | 重要 | | CVE-2026-69422 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69423 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69424 | Windows 分布式文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69425 | Windows NTFS 篡改漏洞 | 重要 | | CVE-2026-69426 | Windows VOLSNAP.SYS Remote Code Execution Vulnerability | 重要 | | CVE-2026-69427 | Microsoft VOLSNAP.SYS 特权提升漏洞 | 重要 | | CVE-2026-69428 | Windows LDAP – 轻型目录访问协议拒绝服务漏洞 | 重要 | | CVE-2026-69429 | Windows Internet 密钥交换 (IKE) 协议扩展远程代码执行漏洞 | 重要 | | CVE-2026-69430 | Windows 嵌入模式服务特权提升漏洞 | 重要 | | CVE-2026-69431 | Telnet 客户端远程代码执行漏洞 | 重要 | | CVE-2026-69432 | 卷管理器驱动特权提升漏洞 | 重要 | | CVE-2026-69433 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69434 | Windows URL Moniker 远程代码执行漏洞 | 重要 | | CVE-2026-69436 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69438 | Microsoft JScript 脚本引擎远程代码执行漏洞 | 重要 | | CVE-2026-69439 | .NET 和 Visual Studio 特权提升漏洞 | 重要 | | CVE-2026-69440 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69441 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-69442 | Microsoft Office 远程执行代码漏洞 | 重要 | | CVE-2026-69443 | Windows 设备健康证明 (DHA) 信息泄露 漏洞 | 重要 | | CVE-2026-69444 | Microsoft Windows 语音组件特权提升漏洞 | 重要 | | CVE-2026-69445 | Windows 压缩文件夹特权提升漏洞 | 重要 | | CVE-2026-69447 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69448 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69449 | Windows BitLocker 远程代码执行漏洞 | 重要 | | CVE-2026-69450 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69451 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-69453 | Microsoft Windows Search 组件篡改漏洞 | 重要 | | CVE-2026-69455 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-69456 | Microsoft Windows 语音组件特权提升漏洞 | 重要 | | CVE-2026-69457 | Windows USB 驱动程序信息泄露漏洞 | 重要 | | CVE-2026-69458 | Windows BitLocker 特权提升漏洞 | 重要 | | CVE-2026-69459 | Windows Power Dependency Coordinator 特权提升漏洞 | 重要 | | CVE-2026-69460 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-69461 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69462 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69463 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69464 | Microsoft Office SharePoint 特权提升 漏洞 | 重要 | | CVE-2026-69465 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69466 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69467 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-69468 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-69469 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69470 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-69472 | Windows Devices Human Interface 特权提升漏洞 | 重要 | | CVE-2026-69473 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69474 | Windows 覆盖筛选器信息泄漏漏洞 | 重要 | | CVE-2026-69475 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-69476 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69477 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69478 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69479 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69480 | Windows Partition Management Driver 特权提升漏洞 | 重要 | | CVE-2026-69481 | Windows 企业应用管理特权提升漏洞 | 重要 | | CVE-2026-69482 | Windows 错误报告篡改漏洞 | 重要 | | CVE-2026-69483 | Windows 图像采集 (WIA) 信息泄露漏洞 | 重要 | | CVE-2026-69485 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-69488 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69489 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69490 | Windows USB Mass Storage Class Driver Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69491 | Microsoft DirectMusic 远程代码执行漏洞 | 重要 | | CVE-2026-69492 | Windows Partition Management Driver 特权提升漏洞 | 重要 | | CVE-2026-69493 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69494 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69495 | Windows 事件日志服务远程代码执行漏洞 | 重要 | | CVE-2026-69496 | Windows 压缩文件夹远程代码执行漏洞 | 重要 | | CVE-2026-69497 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69498 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69499 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-69500 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69501 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69503 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69504 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-69505 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69507 | Microsoft Windows Search 组件信息泄露漏洞 | 重要 | | CVE-2026-69508 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69509 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-69510 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-69511 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 重要 | | CVE-2026-69512 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69513 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69514 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69516 | 连接设备平台服务(Cdpsvc) 特权提升漏洞 | 重要 | | CVE-2026-69517 | Windows 无线网络特权提升漏洞 | 重要 | | CVE-2026-69518 | Windows Remote Desktop 远程代码执行 漏洞 | 严重 | | CVE-2026-69522 | .NET 和 Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-69524 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-69525 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69527 | Windows USB 大容量存储类驱动器信息泄露漏洞 | 重要 | | CVE-2026-69528 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69529 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69530 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-69531 | Microsoft Windows 语音组件篡改漏洞 | 重要 | | CVE-2026-69532 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69534 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-69535 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69536 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69538 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-69539 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69540 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69541 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69542 | Windows 相机帧服务器监视器特权提升漏洞 | 重要 | | CVE-2026-69544 | Microsoft SMB 客户端特权提升漏洞 | 重要 | | CVE-2026-69546 | Windows Active Directory 域服务远程代码执行漏洞 | 重要 | | CVE-2026-69547 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69548 | Windows RNDIS 信息泄露漏洞 | 重要 | | CVE-2026-69549 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69551 | Windows DNS Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-69552 | Windows 打印后台处理程序组件信息泄露漏洞 | 重要 | | CVE-2026-69553 | Windows Hyper-V 特权提升漏洞 | 重要 | | CVE-2026-69554 | Microsoft Windows Search 组件篡改漏洞 | 重要 | | CVE-2026-69556 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69559 | Microsoft Teams for Android 信息泄露漏洞 | 重要 | | CVE-2026-69560 | Windows Work Folder 服务权限提升漏洞 | 重要 | | CVE-2026-69561 | Windows CD-ROM 驱动程序特权提升漏洞 | 重要 | | CVE-2026-69562 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-69563 | Windows 程序兼容性助手服务特权提升漏洞 | 重要 | | CVE-2026-69564 | Windows 联机证书状态协议 (OCSP) 特权提升 漏洞 | 重要 | | CVE-2026-69566 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69567 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69568 | 存储空间控制器信息泄露漏洞 | 重要 | | CVE-2026-69569 | Windows 打印后台处理程序组件拒绝服务漏洞 | 重要 | | CVE-2026-69571 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69572 | Windows SMB 客户端信息泄露漏洞 | 重要 | | CVE-2026-69573 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69574 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69575 | Windows 储存空间控件特权提升漏洞 | 重要 | | CVE-2026-69576 | 图形字体特权提升漏洞 | 重要 | | CVE-2026-69578 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-69579 | Windows Message Queuing 远程代码执行漏洞 | 严重 | | CVE-2026-69580 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69581 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69582 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-69583 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69584 | Windows USB 视频驱动程序特权提升漏洞 | 重要 | | CVE-2026-69585 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69586 | Microsoft Windows PDF 远程代码执行漏洞 | 重要 | | CVE-2026-69587 | Windows Internet 密钥交换 (IKE) 扩展拒绝服务漏洞 | 重要 | | CVE-2026-69588 | Windows TCP/IP 拒绝服务漏洞 | 重要 | | CVE-2026-69589 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69590 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69591 | Windows NTFS 信息泄露漏洞 | 重要 | | CVE-2026-69592 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69593 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69594 | Microsoft 本地安全机构 (LSA) 服务器特权提升漏洞 | 重要 | | CVE-2026-69595 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-69597 | Windows HTTP.sys 特权提升漏洞 | 重要 | | CVE-2026-69598 | Windows iSCSI 远程代码执行漏洞 | 重要 | | CVE-2026-69599 | 远程桌面服务远程执行代码漏洞 | 重要 | | CVE-2026-69600 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69601 | Microsoft Windows Media Foundation 远程执行代码漏洞 | 严重 | | CVE-2026-69602 | Windows PrintWorkflowUserSvc 特权提升漏洞 | 重要 | | CVE-2026-69603 | Windows Hyper-V 远程执行代码漏洞 | 严重 | | CVE-2026-69604 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69605 | Microsoft 安装服务特权提升漏洞 | 重要 | | CVE-2026-69606 | Windows Shell 特权提升漏洞 | 重要 | | CVE-2026-69607 | Windows 部署服务远程代码执行漏洞 | 重要 | | CVE-2026-69608 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69609 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69610 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69611 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69612 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69613 | Windows 映像获取特权提升漏洞 | 重要 | | CVE-2026-69614 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69615 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69616 | Windows 远程桌面服务信息泄露漏洞 | 重要 | | CVE-2026-69617 | Windows Resilient 文件系统 (ReFS) 特权提升漏洞 | 重要 | | CVE-2026-69618 | Windows SMB 客户端信息泄露漏洞 | 重要 | | CVE-2026-69619 | Windows exFAT 文件系统特权提升漏洞 | 重要 | | CVE-2026-69620 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69621 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-69623 | Windows HTTP 打印提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69624 | Active Directory 证书服务 (AD CS) 篡改漏洞 | 重要 | | CVE-2026-69625 | 已连接用户体验和遥测特权提升漏洞 | 重要 | | CVE-2026-69626 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-69627 | Windows 远程桌面授权服务信息泄露漏洞 | 重要 | | CVE-2026-69628 | Windows iSCSI 远程代码执行漏洞 | 重要 | | CVE-2026-69629 | Microsoft Office Outlook 远程代码执行漏洞 | 重要 | | CVE-2026-69630 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69631 | Windows DNS 拒绝服务漏洞 | 重要 | | CVE-2026-69632 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-69636 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69637 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69638 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69641 | Microsoft Exchange Server 特权提升漏洞 | 重要 | | CVE-2026-69642 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-69643 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69645 | Windows 消息队列 (MSMQ) 特权提升漏洞 | 重要 | | CVE-2026-69646 | Skype for Business 欺骗漏洞 | 重要 | | CVE-2026-69648 | Windows 通知特权提升漏洞 | 重要 | | CVE-2026-69649 | Raw Image Extension Remote Code Execution Vulnerability | 严重 | | CVE-2026-69652 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69654 | Windows 帐户控制特权提升漏洞 | 重要 | | CVE-2026-69669 | Windows Kernel 远程代码执行漏洞 | 重要 | | CVE-2026-69671 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69672 | Windows DNS 信息泄露漏洞 | 重要 | | CVE-2026-69674 | Windows 新式设备管理 (MDM) 安全功能绕过漏洞 | 重要 | | CVE-2026-69676 | Windows Kerberos 远程代码执行漏洞 | 严重 | | CVE-2026-69678 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69679 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-69680 | Windows DNS 欺骗漏洞 | 重要 | | CVE-2026-69681 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69682 | Windows 主机保护者服务特权提升漏洞 | 重要 | | CVE-2026-69683 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69684 | Windows 错误报告信息泄露漏洞 | 重要 | | CVE-2026-69685 | Windows Kerberos 特权提升漏洞 | 重要 | | CVE-2026-69686 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69687 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69688 | Windows 加密文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69689 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69690 | Microsoft Office SharePoint 欺骗漏洞 | 重要 | | CVE-2026-69691 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-69692 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69693 | Windows 设备关联中转站服务特权提升漏洞 | 重要 | | CVE-2026-69694 | Windows IP 地址管理(IPAM) 服务特权提升漏洞 | 重要 | | CVE-2026-69706 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69707 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69708 | Windows Web 平台存储 特权提升 漏洞 | 重要 | | CVE-2026-69709 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-69710 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69711 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69712 | Windows 密钥分发中心远程代码执行漏洞 | 严重 | | CVE-2026-69713 | Windows 安全启动安全功能绕过漏洞 | 重要 | | CVE-2026-69714 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69715 | Windows Direct Show 远程代码执行漏洞 | 重要 | | CVE-2026-69716 | Microsoft Office SharePoint 特权提升 漏洞 | 重要 | | CVE-2026-69717 | Windows 组策略特权提升漏洞 | 重要 | | CVE-2026-69719 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-69720 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-69722 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69723 | Windows 内核信息泄露漏洞 | 重要 | | CVE-2026-69724 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69725 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69727 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69729 | Windows 凭据提供程序远程代码执行漏洞 | 重要 | | CVE-2026-69730 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69731 | HID 类驱动器特权提升漏洞 | 重要 | | CVE-2026-69732 | Windows 链接层拓扑发现协议远程代码执行漏洞 | 重要 | | CVE-2026-69734 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-69735 | Windows Broadcast DVR User Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-69738 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69739 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-69740 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69741 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69742 | Microsoft Office Publisher 远程代码执行漏洞 | 重要 | | CVE-2026-69744 | Windows Kerberos 拒绝服务漏洞 | 重要 | | CVE-2026-69757 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69758 | Windows 通用磁盘格式文件系统驱动程序 (UDFS) 特权提升漏洞 | 重要 | | CVE-2026-69759 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69760 | Windows Kerberos 拒绝服务漏洞 | 重要 | | CVE-2026-69761 | Windows TCP/IP 特权提升漏洞 | 重要 | | CVE-2026-69762 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69764 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-69767 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69768 | Windows RNDIS 远程代码执行漏洞 | 重要 | | CVE-2026-69769 | Windows HTTP 打印提供程序远程代码执行漏洞 | 严重 | | CVE-2026-69770 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69771 | Windows 容器管理器服务安全功能绕过漏洞 | 重要 | | CVE-2026-69772 | Windows 网络文件系统远程代码执行漏洞 | 重要 | | CVE-2026-69773 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69775 | Windows DWM 核心库特权提升漏洞 | 重要 | | CVE-2026-69777 | Microsoft DHCP 客户端特权提升漏洞 | 重要 | | CVE-2026-69778 | Microsoft Office Access 远程代码执行漏洞 | 重要 | | CVE-2026-69779 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69781 | Windows DHCP 客户端拒绝服务漏洞 | 重要 | | CVE-2026-69782 | Windows DNS 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69784 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69785 | Windows 智能卡特权提升漏洞 | 重要 | | CVE-2026-69786 | Windows Text Shaping 远程代码执行漏洞 | 重要 | | CVE-2026-69787 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69790 | Windows 凭据提供程序特权提升漏洞 | 重要 | | CVE-2026-69791 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69792 | Windows Win32K 安全功能绕过漏洞 | 重要 | | CVE-2026-69793 | Windows TCP/IP 安全功能绕过漏洞 | 重要 | | CVE-2026-69794 | Windows 加密文件系统 (EFS) 信息泄露漏洞 | 重要 | | CVE-2026-69797 | Microsoft Office PowerPoint 远程代码执行漏洞 | 严重 | | CVE-2026-69799 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69801 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-69803 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69804 | Microsoft Office SharePoint 远程代码执行 漏洞 | 重要 | | CVE-2026-69805 | .NET 特权提升漏洞 | 重要 | | CVE-2026-69806 | .NET 特权提升漏洞 | 重要 | | CVE-2026-69807 | PowerShell 权限提升漏洞 | 重要 | | CVE-2026-69808 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69809 | Windows Active Directory 域服务拒绝服务漏洞 | 重要 | | CVE-2026-69813 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69814 | Windows 凭据提供程序特权提升漏洞 | 重要 | | CVE-2026-69816 | Windows 帐户控制特权提升漏洞 | 重要 | | CVE-2026-69817 | Windows Bluetooth 端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-69818 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69819 | RPC 运行时库远程代码执行漏洞 | 重要 | | CVE-2026-69820 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69821 | Active Directory Certificate Services (AD CS) 特权提升 漏洞 | 重要 | | CVE-2026-69822 | Windows Kerberos 特权提升漏洞 | 重要 | | CVE-2026-69824 | Microsoft Standard XPS 远程代码执行漏洞 | 重要 | | CVE-2026-69826 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-69827 | Windows DNS 服务器远程执行代码漏洞 | 严重 | | CVE-2026-69829 | Windows Shell 远程执行代码漏洞 | 严重 | | CVE-2026-69832 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69834 | Windows ALPC 特权提升漏洞 | 重要 | | CVE-2026-69838 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69839 | Windows iSCSI 目标服务拒绝服务漏洞 | 重要 | | CVE-2026-69841 | Windows 加密文件系统 (EFS) 特权提升漏洞 | 重要 | | CVE-2026-69844 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-69845 | Windows DHCP 服务器远程执行代码漏洞 | 严重 | | CVE-2026-69846 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69847 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69852 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-69853 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-69854 | Spring Cloud Azure 特权提升 漏洞 | 严重 | | CVE-2026-69857 | Azure Cosmos DB 欺骗漏洞 | 严重 | | CVE-2026-69858 | Windows DNS Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-69859 | Windows USB 音频类驱动器 (usbaudio.sys) 特权提升漏洞 | 重要 | | CVE-2026-69860 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-69862 | Windows 无线广域网服务信息泄露漏洞 | 重要 | | CVE-2026-69864 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-69866 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-69874 | Windows ALPC 特权提升漏洞 | 严重 | | CVE-2026-69875 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-69876 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69878 | Windows DHCP 服务器远程执行代码漏洞 | 重要 | | CVE-2026-69881 | Windows Internet 密钥交换 (IKE) 扩展拒绝服务漏洞 | 重要 | | CVE-2026-69889 | Windows Bluetooth 服务特权提升漏洞 | 重要 | | CVE-2026-69890 | Windows 虚拟受信任的平台模块特权提升漏洞 | 严重 | | CVE-2026-69891 | Windows Media 特权提升 漏洞 | 重要 | | CVE-2026-69895 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-69896 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-69900 | Kernel Streaming WOW Thunk 服务驱动程序特权提升漏洞 | 重要 | | CVE-2026-69904 | Microsoft Office SharePoint 信息泄露 漏洞 | 重要 | | CVE-2026-69906 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-69907 | Windows 企业应用管理特权提升漏洞 | 重要 | | CVE-2026-69910 | Windows Hyper-V 远程执行代码漏洞 | 重要 | | CVE-2026-69911 | Microsoft Windows Search 组件特权提升漏洞 | 重要 | | CVE-2026-69921 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-69929 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69930 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-69989 | Windows DNS 服务器远程执行代码漏洞 | 重要 | | CVE-2026-70019 | Windows 压缩文件夹信息泄露漏洞 | 重要 | | CVE-2026-70065 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-70091 | Windows DNS 拒绝服务漏洞 | 重要 | | CVE-2026-70124 | Windows DHCP Server 信息泄露漏洞 | 重要 | | CVE-2026-70145 | Microsoft Windows Search 组件信息泄露漏洞 | 重要 | | CVE-2026-70178 | Microsoft Fabric 特权提升 漏洞 | 严重 | | CVE-2026-70203 | Windows Media Player Remote Code Execution Vulnerability | 严重 | | CVE-2026-70283 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70289 | Windows Win32k 特权提升漏洞 | 重要 | | CVE-2026-70290 | Win32k 信息泄露漏洞 | 重要 | | CVE-2026-70296 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-70334 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-70342 | WinSock 的 Windows 辅助功能驱动程序特权提升漏洞 | 重要 | | CVE-2026-70351 | Microsoft WebP Image Extension Remote Code Execution Vulnerability | 严重 | | CVE-2026-70352 | Azure AI Language 特权提升漏洞 | 严重 | | CVE-2026-70562 | Windows 音频服务特权提升漏洞 | 重要 | | CVE-2026-70563 | Windows Shell 欺骗漏洞 | 重要 | | CVE-2026-70564 | Windows 打印后台处理程序组件特权提升漏洞 | 重要 | | CVE-2026-70565 | Windows AF_UNIX Socket Provider Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70567 | Windows 显示增强服务特权提升漏洞 | 重要 | | CVE-2026-70568 | Windows Defender 防火墙服务特权提升漏洞 | 重要 | | CVE-2026-70569 | Windows Spaceport.sys 特权提升漏洞 | 重要 | | CVE-2026-70570 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 重要 | | CVE-2026-70572 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70573 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70574 | 虚拟硬盘(VHD) 微型端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-70575 | Windows Schannel Denial of Service Vulnerability | 重要 | | CVE-2026-70577 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-70578 | Windows Credential Guard Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70579 | Windows Mobile Broadband Information Disclosure Vulnerability | 重要 | | CVE-2026-70581 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-70582 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-70583 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70584 | Windows Core Messaging Elevation of Privilege Vulnerability | 重要 | | CVE-2026-70585 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-70586 | Windows Paint Remote Code Execution Vulnerability | 严重 | | CVE-2026-70587 | Windows Remote Desktop Protocol Information Disclosure Vulnerability | 重要 | | CVE-2026-71328 | .NET 和 Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-71329 | Windows NTFS 远程执行代码漏洞 | 重要 | | CVE-2026-71330 | NFS ONCRPC XDR Driver 的 Windows 服务信息泄露漏洞 | 重要 | | CVE-2026-71332 | Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71333 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-71334 | Windows NFS Portmapper Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71336 | Windows Work Folder Service Remote Code Execution Vulnerability | 重要 | | CVE-2026-71337 | Windows 存储管理提供程序特权提升漏洞 | 重要 | | CVE-2026-71338 | Windows Failover Cluster Elevation of Privilege Vulnerability | 重要 | | CVE-2026-71339 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-71340 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-71341 | Windows Partition Management Driver Information Disclosure Vulnerability | 重要 | | CVE-2026-71342 | Windows 远程访问连接管理器特权提升漏洞 | 重要 | | CVE-2026-71343 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-71345 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71348 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71349 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71350 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-71351 | Windows 路由和远程访问服务 (RRAS) 特权提升漏洞 | 重要 | | CVE-2026-71352 | Windows Remote Access Connection Manager Remote Code Execution Vulnerability | 重要 | | CVE-2026-71353 | Windows 路由和远程访问服务 (RRAS) 特权提升漏洞 | 重要 | | CVE-2026-72926 | Windows Internet Connection Sharing (ICS) Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72927 | Winsock Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72928 | Windows DNS Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-72929 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-72930 | Windows 安全套接字隧道协议 (SSTP) 远程代码执行漏洞 | 重要 | | CVE-2026-72931 | Windows 安全套接字隧道协议 (SSTP) 拒绝服务漏洞 | 重要 | | CVE-2026-72932 | Windows Message Queuing Queue Manager Information Disclosure Vulnerability | 重要 | | CVE-2026-72933 | Microsoft WDAC OLE DB provider for SQL Remote Code Execution Vulnerability | 重要 | | CVE-2026-72935 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-72936 | Windows SMB 客户端远程执行代码漏洞 | 重要 | | CVE-2026-72937 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-72938 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72939 | Windows Routing and Remote Access Service (RRAS) Denial of Service Vulnerability | 重要 | | CVE-2026-72940 | Windows Schannel 远程代码执行漏洞 | 重要 | | CVE-2026-72941 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72942 | Windows Spaceport.sys 信息泄露漏洞 | 重要 | | CVE-2026-72943 | Windows 部署服务远程代码执行漏洞 | 重要 | | CVE-2026-72944 | 角色:Windows 传真服务特权提升漏洞 | 重要 | | CVE-2026-72945 | Windows Task Scheduler Information Disclosure Vulnerability | 重要 | | CVE-2026-72946 | Microsoft 存储端口驱动程序特权提升漏洞 | 重要 | | CVE-2026-72947 | Windows 文件历史记录服务特权提升漏洞 | 重要 | | CVE-2026-72948 | Windows DNS 特权提升漏洞 | 重要 | | CVE-2026-72949 | Windows SMB Server Network Transport Driver (srvnet.sys) Denial of Service Vulnerability | 重要 | | CVE-2026-72950 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-72952 | Windows Spaceport.sys 远程代码执行漏洞 | 重要 | | CVE-2026-72953 | Windows USB 驱动程序特权提升漏洞 | 重要 | | CVE-2026-72954 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-72956 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72957 | Windows 部署服务远程代码执行漏洞 | 严重 | | CVE-2026-72958 | Windows Credential Guard Elevation of Privilege Vulnerability | 严重 | | CVE-2026-72959 | Windows Routing and Remote Access Service (RRAS) 远程代码执行漏洞 | 严重 | | CVE-2026-72960 | Windows Media Player Remote Code Execution Vulnerability | 严重 | | CVE-2026-72961 | Windows Hyper-V 特权提升漏洞 | 严重 | | CVE-2026-72962 | Windows USB 视频驱动程序特权提升漏洞 | 严重 | | CVE-2026-72963 | Windows Modern Execution Server Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72964 | Windows Internet Connection Sharing (ICS) Tampering Vulnerability | 重要 | | CVE-2026-72965 | Windows WebClient Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-72966 | Windows Remote Access Connection Manager Tampering Vulnerability | 重要 | | CVE-2026-72967 | Windows 网络连接 Broker 权限提升漏洞 | 重要 | | CVE-2026-72972 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-72973 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-72974 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-72975 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72976 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-72977 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-72978 | Active Directory Federation Services (AD FS) 拒绝服务 漏洞 | 重要 | | CVE-2026-72979 | Windows DHCP Server Remote Code Execution Vulnerability | 严重 | | CVE-2026-72980 | Windows Hello 安全功能绕过漏洞 | 严重 | | CVE-2026-72981 | IP Helper 远程代码执行漏洞 | 严重 | | CVE-2026-72982 | Windows Netlogon 服务 远程代码执行漏洞 | 严重 | | CVE-2026-72983 | Internet 连接共享 (ICS) 远程执行代码漏洞 | 严重 | | CVE-2026-72985 | 卷影复制特权提升漏洞 | 重要 | | CVE-2026-72986 | Graphic Fonts Remote Code Execution Vulnerability | 严重 | | CVE-2026-72987 | Windows DNS 远程代码执行漏洞 | 严重 | | CVE-2026-72988 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72989 | Windows 故障转移群集 信息泄露 漏洞 | 重要 | | CVE-2026-72990 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72991 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72992 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72993 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72994 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72995 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72996 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72997 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-72999 | Windows USB 集线器驱动程序特权提升漏洞 | 重要 | | CVE-2026-73000 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73001 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73002 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73003 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-73004 | Windows Autopilot 篡改漏洞 | 重要 | | CVE-2026-73005 | Windows 身份验证 方法 特权提升 漏洞 | 重要 | | CVE-2026-73006 | DirectWrite 远程执行代码漏洞 | 严重 | | CVE-2026-73007 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73008 | Windows Biometric Service 信息泄露 漏洞 | 重要 | | CVE-2026-73009 | Windows 安全套接字隧道协议 (SSTP) 远程代码执行漏洞 | 严重 | | CVE-2026-73010 | Microsoft 故障转移群集远程代码执行漏洞 | 严重 | | CVE-2026-73011 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73012 | Windows 管理服务特权提升漏洞 | 重要 | | CVE-2026-73013 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-73014 | Data Sharing Service Client 特权提升 漏洞 | 重要 | | CVE-2026-73015 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73016 | DirectWrite 远程执行代码漏洞 | 重要 | | CVE-2026-73017 | 图形内核远程代码执行漏洞 | 严重 | | CVE-2026-73018 | Graphic Fonts Remote Code Execution Vulnerability | 严重 | | CVE-2026-73019 | UrlMon 安全功能绕过 漏洞 | 重要 | | CVE-2026-73020 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73021 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73022 | Windows 现代设备管理 (MDM) 特权提升漏洞 | 重要 | | CVE-2026-73023 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-73024 | Windows Services for NFS ONCRPC XDR 驱动程序 特权提升 漏洞 | 重要 | | CVE-2026-73025 | Windows iSCSI 安全功能绕过漏洞 | 重要 | | CVE-2026-73026 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-73028 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-73029 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-77480 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77481 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77482 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77483 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77484 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77485 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77486 | Microsoft SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-77487 | SQL 服务器特权提升漏洞 | 重要 | | CVE-2026-77488 | Microsoft SQL Server 信息泄露漏洞 | 重要 | | CVE-2026-77489 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-77491 | Windows GDI 信息泄露漏洞 | 重要 | | CVE-2026-77492 | Windows 存储端口驱动程序信息泄露漏洞 | 重要 | | CVE-2026-77493 | Windows 图形组件远程执行代码漏洞 | 严重 | | CVE-2026-77494 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77495 | Windows Imaging Component Remote Code Execution Vulnerability | 严重 | | CVE-2026-77498 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77499 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77500 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-77501 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77502 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77503 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-77504 | Microsoft Office Word 远程代码执行漏洞 | 严重 | | CVE-2026-77505 | Windows DNS 服务器远程执行代码漏洞 | 严重 | | CVE-2026-77886 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77887 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-77888 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77889 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77890 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77891 | Windows DHCP Server Remote Code Execution Vulnerability | 重要 | | CVE-2026-77892 | Windows 引导管理器特权提升漏洞 | 重要 | | CVE-2026-77893 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77894 | Windows Installer 特权提升漏洞 | 重要 | | CVE-2026-77895 | Windows DHCP 服务器拒绝服务漏洞 | 重要 | | CVE-2026-77896 | Windows Remote Desktop 客户端 拒绝服务 漏洞 | 重要 | | CVE-2026-77897 | Microsoft Power Automate Desktop 特权提升漏洞 | 重要 | | CVE-2026-77898 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-77899 | Windows Security Center Elevation of Privilege Vulnerability | 重要 | | CVE-2026-77901 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-77904 | Windows 卷管理器扩展驱动特权提升漏洞 | 重要 | | CVE-2026-77905 | Windows Management Instrumentation (WMI) 特权提升漏洞 | 重要 | | CVE-2026-77906 | Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-77907 | Visual Studio 远程执行代码漏洞 | 重要 | | CVE-2026-77908 | Microsoft Dynamics 365(本地)远程执行代码漏洞 | 重要 | | CVE-2026-77909 | Azure CycleCloud 信息泄露漏洞 | 重要 | | CVE-2026-77911 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78439 | Microsoft Office 图形组件远程代码执行漏洞 | 严重 | | CVE-2026-78441 | Windows OLE DB 信息泄露漏洞 | 重要 | | CVE-2026-78442 | Windows OLE DB 远程代码执行漏洞 | 重要 | | CVE-2026-78444 | Microsoft 故障转移群集远程代码执行漏洞 | 严重 | | CVE-2026-78445 | NFS ONCRPC XDR Driver 的 Windows 服务远程代码执行漏洞 | 严重 | | CVE-2026-78446 | Windows 分布式文件系统 (DFS) 拒绝服务 漏洞 | 重要 | | CVE-2026-78447 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-78448 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-78449 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-78450 | Windows 可靠多播传输驱动程序 (RMCAST) 远程代码执行漏洞 | 严重 | | CVE-2026-78451 | Microsoft Windows SCSI 类系统文件 特权提升 漏洞 | 重要 | | CVE-2026-78452 | Microsoft Windows SCSI 类系统文件信息泄露漏洞 | 重要 | | CVE-2026-78453 | Microsoft Windows SCSI 类系统文件信息泄露漏洞 | 重要 | | CVE-2026-78454 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-78455 | Xbox 信息泄露 漏洞 | 重要 | | CVE-2026-78456 | SQL Server 远程执行代码漏洞 | 重要 | | CVE-2026-78457 | Windows 安全状况服务 特权提升 漏洞 | 重要 | | CVE-2026-78461 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-78462 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-78463 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-78464 | Windows MIDI 服务模块特权提升漏洞 | 重要 | | CVE-2026-78502 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78503 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78504 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78505 | Microsoft Office 远程执行代码漏洞 | 严重 | | CVE-2026-78506 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78507 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78508 | Windows CD-ROM 驱动程序 信息泄露 漏洞 | 重要 | | CVE-2026-78509 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78510 | Microsoft Word 远程执行代码漏洞 | 严重 | | CVE-2026-78511 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78512 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78513 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-78514 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78515 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-78516 | Windows Storage 信息泄露漏洞 | 重要 | | CVE-2026-78517 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78518 | Microsoft Office Excel 远程代码执行漏洞 | 重要 | | CVE-2026-78519 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78520 | Microsoft Office Outlook 信息泄露 漏洞 | 严重 | | CVE-2026-78521 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-78522 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-78523 | Windows DNS 服务器拒绝服务漏洞 | 重要 | | CVE-2026-78524 | Microsoft Office 远程执行代码漏洞 | 重要 | | CVE-2026-78525 | Microsoft Office Outlook 远程代码执行漏洞 | 严重 | | CVE-2026-78526 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80073 | Microsoft Office Outlook 信息泄露 漏洞 | 重要 | | CVE-2026-80074 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-80075 | Windows Work Folders 特权提升 漏洞 | 重要 | | CVE-2026-80076 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80077 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-80078 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80079 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80080 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80081 | Microsoft Office PowerPoint 远程代码执行漏洞 | 重要 | | CVE-2026-80082 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80083 | Windows Hyper-V 远程执行代码漏洞 | 严重 | | CVE-2026-80084 | Microsoft Office Outlook 信息泄露 漏洞 | 重要 | | CVE-2026-80085 | Microsoft Office Word 远程代码执行漏洞 | 重要 | | CVE-2026-80086 | Microsoft Office PowerPoint 信息泄露 漏洞 | 重要 | | CVE-2026-80087 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80088 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80089 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80090 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-80091 | Microsoft Office 信息泄露漏洞 | 重要 | | CVE-2026-80093 | Windows Cloud Files Mini Filter Driver 特权提升漏洞 | 重要 | | CVE-2026-80096 | Windows 远程桌面服务特权提升漏洞 | 重要 | | CVE-2026-80097 | Microsoft Authenticator 特权提升漏洞 | 重要 | | CVE-2026-80098 | Copilot Studio 特权提升漏洞 | 严重 | | CVE-2026-81349 | Azure HDInsight Ambari 特权提升 漏洞 | 重要 | | CVE-2026-81352 | Web Media 扩展程序远程执行代码漏洞 | 严重 | | CVE-2026-81353 | HEIF Image 扩展程序远程执行代码漏洞 | 重要 | | CVE-2026-81354 | Windows Hello 特权提升漏洞 | 严重 | | CVE-2026-81355 | Virtual Hard Disk (VHD) Miniport 驱动程序 远程代码执行 漏洞 | 严重 | | CVE-2026-81356 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81357 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81376 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81377 | Visual Studio Code 篡改漏洞 | 重要 | | CVE-2026-81378 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81379 | Visual Studio Code 安全功能绕过漏洞 | 重要 | | CVE-2026-81380 | GitHub Copilot 及 Visual Studio Code 信息泄露漏洞 | 重要 | | CVE-2026-81381 | GitHub Copilot 及 Visual Studio Code 信息泄露漏洞 | 重要 | | CVE-2026-81383 | Visual Studio Code 信息泄露 漏洞 | 重要 | | CVE-2026-81385 | Microsoft Office Publisher 远程代码执行漏洞 | 重要 | | CVE-2026-81386 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81387 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81388 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81389 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81390 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81391 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81392 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81393 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81394 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81395 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81396 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81397 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81398 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81399 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81400 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81401 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81947 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81948 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81949 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81950 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81951 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81952 | Microsoft Word 远程执行代码漏洞 | 严重 | | CVE-2026-81953 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81954 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81955 | Windows 图形组件远程执行代码漏洞 | 严重 | | CVE-2026-81956 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81957 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81958 | Microsoft Excel 信息泄露漏洞 | 重要 | | CVE-2026-81959 | Microsoft Excel 远程执行代码漏洞 | 严重 | | CVE-2026-81960 | Microsoft Excel 远程执行代码漏洞 | 重要 | | CVE-2026-81963 | Windows Update Stack 特权提升漏洞 | 重要 | | CVE-2026-83498 | Windows 基于虚拟化的安全性 (VBS) Enclave 特权提升漏洞 | 严重 | | CVE-2026-83501 | Windows 基于虚拟化的安全性 (VBS) 信息泄露漏洞 | 严重 | | CVE-2026-83711 | Microsoft Azure Active Directory B2C 特权提升漏洞 | 严重 | | CVE-2026-83939 | Windows 安全内核模式特权提升漏洞 | 严重 | | CVE-2026-83940 | Windows 设备关联服务特权提升漏洞 | 重要 | | CVE-2026-83941 | Entra ID 特权提升漏洞 | 严重 | | CVE-2026-83942 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-83948 | Microsoft Azure CLI 远程代码执行漏洞 | 重要 | | CVE-2026-83949 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-83951 | Microsoft Office Word 信息泄露漏洞 | 重要 | | CVE-2026-83952 | Windows Resilient 文件系统 (ReFS) 特权提升漏洞 | 重要 | | CVE-2026-83954 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83955 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83967 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83968 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83969 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83970 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83971 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83972 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83973 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83974 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83975 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83976 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83977 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83978 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83979 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83980 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83981 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83982 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83983 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83985 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83986 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83987 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83988 | Windows 生物识别服务特权提升漏洞 | 重要 | | CVE-2026-83989 | Windows Services for NFS ONCRPC XDR 驱动程序 拒绝服务漏洞 | 重要 | | CVE-2026-83990 | Microsoft 图形组件特权提升漏洞 | 重要 | | CVE-2026-83991 | Windows 云文件微型筛选驱动程序 篡改 漏洞 | 重要 | | CVE-2026-83992 | Windows Imaging Component Remote Code Execution Vulnerability | 重要 | | CVE-2026-83995 | Windows NTFS 特权提升漏洞 | 重要 | | CVE-2026-83996 | Windows 错误报告特权提升漏洞 | 重要 | | CVE-2026-83997 | Windows Message Queuing 远程代码执行漏洞 | 重要 | | CVE-2026-83998 | 远程桌面客户端远程执行代码漏洞 | 重要 | | CVE-2026-83999 | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability | 重要 | | CVE-2026-84000 | Microsoft 图形组件 远程代码执行 漏洞 | 重要 | | CVE-2026-84001 | Windows 密钥分发中心 拒绝服务 漏洞 | 重要 | | CVE-2026-84003 | Microsoft Authentication Library (MSAL) 适用于 Node.js 欺骗漏洞 | 重要 | | CVE-2026-85360 | Windows 内核特权提升漏洞 | 重要 | | CVE-2026-85875 | Microsoft Office Excel 信息泄露漏洞 | 重要 | | CVE-2026-85877 | Windows 打印后台处理程序远程执行代码漏洞 | 重要 | | CVE-2026-85880 | Windows 高级本地过程调用 (ALPC) 特权提升漏洞 | 重要 |
二、影响范围
受影响的产品/功能/服务/组件包括:
.NET
.NET and Visual Studio
Active Directory Certificate Services (AD CS)
Active Directory Domain Services
Active Directory Federation Services (AD FS)
ASP.NET Core
Audio Video Control Transport Protocol
Azure AI Language
Azure Arc
Azure Cosmos DB
Azure CycleCloud
Azure HDInsights
BranchCache
Connected Devices Platform Service (Cdpsvc)
Copilot Studio
Data Sharing Service Client
Entra ID
GitHub Copilot and Visual Studio Code
Graphic Fonts
HID class driver
Internet Storage Name Service
IP Helper
Kernel Streaming WOW Thunk Service Driver
Microsoft Account
Microsoft Authentication Library (MSAL) for Node.js
Microsoft Authenticator
Microsoft Azure Active Directory B2C
Microsoft Azure CLI
Microsoft COM for Windows
Microsoft Discovery Studio
Microsoft Dynamics 365
Microsoft Entra ID
Microsoft Exchange Server
Microsoft Fabric
Microsoft Graphics Component
Microsoft Install Service
Microsoft JScript
Microsoft Local Security Authority Server (lsasrv)
Microsoft Office
Microsoft Office Access
Microsoft Office Excel
Microsoft Office Outlook
Microsoft Office PowerPoint
Microsoft Office Publisher
Microsoft Office SharePoint
Microsoft Office Word
Microsoft Standard XPS
Microsoft Teams for Android
Microsoft Trace Data Helper
Microsoft UxTheme Library (uxtheme.dll)
Microsoft WDAC OLE DB provider for SQL
Microsoft WebP Image Extension
Microsoft Windows Codecs Library
Microsoft Windows Media Foundation
Microsoft Windows PDF
Microsoft Windows SCSI Class System File
Microsoft Windows Search Component
Microsoft Windows Speech
OpenSSH for Windows
Power Automate
Push Message Routing Service
Reliable Multicast Transport Driver (RMCAST)
Remote Desktop Client
Remote Desktop Gateway Service
Role: DNS Server
Role: Windows Fax Service
RPC Runtime
Skype for Business
Spring Cloud Azure
SQL Server
Storage Port Driver
Telnet Client
Virtual Hard Disk (VHD) Miniport Driver
Visual Studio
Visual Studio Code
Volume Manager Driver
Windows Accounts Control
Windows AF_UNIX Socket Provider
Windows ALPC
Windows Ancillary Function Driver for WinSock
Windows Audio Service
Windows Authentication Methods
Windows Autopilot
Windows Bind Filter Driver
Windows Biometric Service
Windows BitLocker
Windows Bluetooth Port Driver
Windows Bluetooth Service
Windows Boot Manager
Windows Broadcast DVR User Service
Windows Broker Infrastructure Service
Windows Camera Frame Server Monitor
Windows CD-ROM Driver
Windows Cloud Files Mini Filter Driver
Windows Compressed Folder
Windows Connected User Experiences and Telemetry
Windows Container Manager Service
Windows Core Messaging
Windows Credential Guard
Windows Credential Providers
Windows DCOM Server
Windows Defender Firewall Service
Windows Deployment Services
Windows Device Association Broker service
Windows Device Association Service
Windows Device Health Attestation (DHA)
Windows Devices Human Interface
Windows DHCP Client
Windows DHCP Server
Windows Direct Show
Windows Display Enhancement Service
Windows Distributed File System (DFS)
Windows DNS
Windows DWM Core Library
Windows Embedded Mode Service
Windows Encrypting File System (EFS)
Windows Enterprise App Management
Windows Error Reporting
Windows Event Logging Service
Windows exFAT File System
Windows Failover Cluster
Windows Fast FAT Driver
Windows File History Service
Windows GDI
Windows GDI+
Windows Graphics Kernel
Windows Group Policy
Windows Hello
Windows Host Guardian Service
Windows HTTP Print Provider
Windows HTTP.sys
Windows Hyper-V
Windows IKE Extension
Windows Image Acquisition
Windows Imaging Component
Windows Installer
Windows Internet Connection Sharing (ICS)
Windows IP Address Management (IPAM) Service
Windows iSCSI
Windows iSCSI Target Service
Windows Kerberos
Windows Kernel
Windows Kernel Mode Driver
Windows Key Distribution Center
Windows LDAP – Lightweight Directory Access Protocol
Windows License Manager
Windows Link Layer Topology Discovery Protocol
Windows Management Instrumentation
Windows Management Services
Windows Media
Windows Media Player
Windows Message Queuing
Windows Message Queuing Queue Manager
Windows Microsoft DirectMusic
Windows MIDI Service Module
Windows Mobile Broadband
Windows Modern Device Management (MDM)
Windows Modern Execution Server
Windows NDIS
Windows Netlogon
Windows Network Connection Broker
Windows Network File System
Windows NFS Portmapper
Windows Notification
Windows NTFS
Windows OLE DB
Windows Online Certificate Status Protocol (OCSP)
Windows Overlay Filter
Windows Paint
Windows Partition Management Driver
Windows Performance Monitor
Windows Power Dependency Coordinator
Windows PowerShell
Windows Print Spooler Components
Windows PrintWorkflowUserSvc
Windows Program Compatibility Assistant Service
Windows Push Notifications
Windows Raw Image Extension
Windows RDP Client
Windows Registry
Windows Remote Access Connection Manager
Windows Remote Desktop
Windows Remote Desktop Licensing Service
Windows Remote Desktop Protocol
Windows Remote Desktop Services
Windows Resilient File System (ReFS)
Windows Resilient File System (ReFS) Deduplication Service
Windows RNDIS
Windows Routing and Remote Access Service (RRAS)
Windows Schannel
Windows Secure Boot
Windows Secure Kernel Mode
Windows Secure Socket Tunneling Protocol (SSTP)
Windows Security Center
Windows Security Health Service
Windows Server
Windows Services for NFS ONCRPC XDR Driver
Windows Setup Files Cleanup
Windows Shell
Windows Smart Card
Windows SMB Client
Windows SMB Server
Windows SMB Server Network Transport Driver (srvnet.sys)
Windows Spaceport.sys
Windows Storage
Windows Storage Management Provider
Windows Storage Port Driver
Windows Storage Spaces Controller
Windows Task Scheduler
Windows TCP/IP
Windows Text Shaping
Windows Universal Disk Format File System Driver (UDFS)
Windows Universal Plug and Play (UPnP) Device Host
Windows Update Stack
Windows URL Moniker
Windows USB Audio Class driver (usbaudio.sys)
Windows USB Driver
Windows USB Hub Driver
Windows USB Mass Storage Class Driver
Windows USB Video Driver
Windows VHD miniport driver
Windows Virtual Trusted Platform Module
Windows Virtualization-Based Security (VBS) Enclave
Windows VOLSNAP.SYS
Windows Volume Manager Extension Driver
Windows Volume Shadow Copy
Windows Web Platform Storage
Windows WebClient Service
Windows Win32 Kernel Subsystem
Windows Win32K
Windows Wireless Networking
Windows Wireless Wide Area Network Service
Windows Work Folder Service
Windows Work Folders
Winsock
Xbox
XBox Gaming Services
三、安全措施
3.1 升级版本
目前微软已发布相关安全更新,建议受影响的用户尽快修复。
(一)Windows Update自动更新
Microsoft Update默认启用,当系统检测到可用更新时,将会自动下载更新并在下一次启动时安装。也可选择通过以下步骤手动进行更新:
1、点击“开始菜单”或按Windows快捷键,点击进入“设置”
2、选择“更新和安全”,进入“Windows更新”(Windows 8、Windows 8.1、Windows Server 2012以及Windows Server 2012 R2可通过控制面板进入“Windows更新”,具体步骤为“控制面板”->“系统和安全”->“Windows更新”)
3、选择“检查更新”,等待系统自动检查并下载可用更新。
4、更新完成后重启计算机,可通过进入“Windows更新”->“查看更新历史记录”查看是否成功安装了更新。对于没有成功安装的更新,可以点击该更新名称进入微软官方更新描述链接,点击最新的SSU名称并在新链接中点击“Microsoft 更新目录”,然后在新链接中选择适用于目标系统的补丁进行下载并安装。
(二)手动安装更新
Microsoft官方下载相应补丁进行更新。
2026年9月安全更新下载链接:
https://msrc.microsoft.com/update-guide/releaseNote/2026-Sep
补丁下载示例(参考):
1.打开上述下载链接,点击漏洞列表中要修复的CVE链接。
例1:微软漏洞列表(示例)
2.在微软公告页面底部左侧【产品】列选择相应的系统类型,点击右侧【下载】列打开补丁下载链接。
例2:CVE-2022-21989补丁下载示例
3.点击【安全更新】,打开补丁下载页面,下载相应补丁并进行安装。
例3:补丁下载界面
4.安装完成后重启计算机。
3.2临时措施
暂无。
3.3 通用建议
定期更新系统补丁,减少系统漏洞,提升服务器的安全性。
加强系统和网络的访问控制,修改防火墙策略,关闭非必要的应用端口或服务,减少将危险服务(如SSH、RDP等)暴露到公网,减少攻击面。
使用企业级安全产品,提升企业的网络安全性能。
加强系统用户和权限管理,启用多因素认证机制和最小权限原则,用户和软件权限应保持在最低限度。
启用强密码策略并设置为定期修改。
3.4参考链接
https://msrc.microsoft.com/update-guide/releaseNote/2026-Sep
免责声明:
本文所载程序、技术方法仅面向合法合规的安全研究与教学场景,旨在提升网络安全防护能力,具有明确的技术研究属性。
任何单位或个人未经授权,将本文内容用于攻击、破坏等非法用途的,由此引发的全部法律责任、民事赔偿及连带责任,均由行为人独立承担,本站不承担任何连带责任。
本站内容均为技术交流与知识分享目的发布,若存在版权侵权或其他异议,请通过邮件联系处理,具体联系方式可点击页面上方的联系我。
本文转载自:启明星辰安全简讯 《【漏洞通告】微软9月多个安全漏洞》
版权声明
本站仅做备份收录,仅供研究与教学参考之用。
读者将信息用于其他用途的,全部法律及连带责任由读者自行承担,本站不承担任何责任。











评论