CVE-2026-68895
Numeric truncation error in Internet Storage Name Service allows an authorized attacker to disclose information locally.
CVSS
5.5
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 8, 2026 · Last modified: Sep 8, 2026 · CWE-197
Not enough EPSS history yet.
Numeric truncation error in Internet Storage Name Service allows an authorized attacker to disclose information locally.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-785128.8 HIG—
———Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.7hCVE-2026-698227.8 HIG—
———Numeric truncation error in Windows Kerberos allows an authorized attacker to elevate privileges locally.9hCVE-2026-695787.0 HIG—
———Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges locally.9hCVE-2026-695357.8 HIG—
———Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.9hCVE-2026-695128.0 HIG—
———Heap-based buffer overflow in Windows Spaceport.sys allows an authorized attacker to elevate privileges over a network.9hCVE-2026-688808.0 HIG—
———Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges over a network.9h