CVE-2026-66307
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
CVSS
7.5
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 8, 2026 · Last modified: Sep 8, 2026 · CWE-191
Not enough EPSS history yet.
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-819775.5 MED—
———Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.5hCVE-2026-784536.5 MED—
———Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.6hCVE-2026-774885.5 MED—
———Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information locally.6hCVE-2026-729476.4 MED—
———Integer underflow (wrap or wraparound) in Windows File History Service allows an authorized attacker to elevate privileges locally.6hCVE-2026-713528.8 HIG—
———Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network.8hCVE-2026-698597.0 HIG—
———Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.8h