CVE-2026-33114
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVSS
8.4
High
EPSS
0.3%
p24
KEV
—
Exploit Today
7
0-100
Published: Apr 14, 2026 · Last modified: Jul 24, 2026 · CWE-822
0.3%EPSS · 30 days0.3%
2026-08-142026-09-11
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-839398.2 HIG22.1%
——7Untrusted pointer dereference in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.2dCVE-2026-834987.8 HIG22.9%
——7Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.2dCVE-2026-800838.8 HIG13.4%
——4Untrusted pointer dereference in Windows Hyper-V allows an authorized attacker to execute code locally.2dCVE-2026-784516.8 MED37.8%
——11Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.1dCVE-2026-784448.1 HIG42.4%
——13Untrusted pointer dereference in Windows Failover Cluster allows an unauthorized attacker to execute code over a network.22hCVE-2026-729566.5 MED58.3%
——17Untrusted pointer dereference in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network.2d