CVE-2026-72939
Null pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service over a network.
CVSS
6.5
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 8, 2026 · Last modified: Sep 8, 2026 · CWE-476
Not enough EPSS history yet.
Null pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service over a network.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-779018.8 HIG—
———Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a network.4hCVE-2026-774897.8 HIG—
———Null pointer dereference in Windows Biometric Service allows an authorized attacker to elevate privileges locally.4hCVE-2026-729497.5 HIG—
———Null pointer dereference in Windows SMB Server Network Transport Driver (srvnet.sys) allows an unauthorized attacker to deny service over a network.4hCVE-2026-705755.3 MED—
———Null pointer dereference in Windows Schannel allows an authorized attacker to deny service over a network.4hCVE-2026-698817.5 HIG—
———Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.4hCVE-2026-697447.5 HIG—
———Null pointer dereference in Windows Kerberos allows an unauthorized attacker to deny service over a network.4h