CVE-2026-59136
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
CVSS
5.5
Medio
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 11 ago 2026 · Última mod.: 11 ago 2026 · CWE-908
Sin historial EPSS suficiente todavía.
Use of uninitialized resource in Microsoft COM for Windows allows an authorized attacker to disclose information locally.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-703175.5 MED—
———Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.15hCVE-2026-687995.5 MED—
———Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.13hCVE-2026-627405.5 MED—
———Use of uninitialized resource in Windows Imaging Component allows an authorized attacker to disclose information locally.12hCVE-2026-627095.5 MED—
———Use of uninitialized resource in Windows GDI+ allows an authorized attacker to disclose information locally.12hCVE-2026-591375.5 MED—
———Use of uninitialized resource in Windows Event Logging Service allows an authorized attacker to disclose information locally.12hCVE-2026-582475.3 MED—
——0SAP ABAP Platform allows an unauthenticated user to send a specially crafted request to an internal component. This could disclose limited, non-sensitive data from previously used memory, leading to a low on confidentiality, with no impact on integrity and availability of the application.19h