CVE-2026-62908
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized at
CVSS
7.0
Alto
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 11 ago 2026 · Última mod.: 11 ago 2026 · CWE-362 · CWE-416
Sin historial EPSS suficiente todavía.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-703117.8 ALT—
———Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.6hCVE-2026-703077.0 ALT—
———Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.6hCVE-2026-688207.0 ALT—
———Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.6hCVE-2026-668028.1 ALT—
———Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Azure Attestation service and Device Health Attestation Service allows an unauthorized attacker to execute code over a network.6hCVE-2026-657898.1 ALT—
———Use after free in Windows DNS allows an unauthorized attacker to execute code over a network.6hCVE-2026-657887.0 ALT—
———Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.6h