PULSE
EN VIVO16señales / 24h
FEED
ransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Foundransompayload reclama a B&B Hydraulik · DE · Manufacturingransompayload reclama a Stücheli Architekten · CH · Professional Servicesransompayload reclama a Baya Technologies · Technologyransomkrybit reclama a www.kilpi-koskinen.fi · FI · Otherransomkrybit reclama a www.apsanet.com.ar · AR · Professional Servicesransomqilin reclama a Service Evaluation Concepts · US · Professional Servicesransomqilin reclama a tommer construction · US · Manufacturingransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Foundransompayload reclama a B&B Hydraulik · DE · Manufacturingransompayload reclama a Stücheli Architekten · CH · Professional Servicesransompayload reclama a Baya Technologies · Technologyransomkrybit reclama a www.kilpi-koskinen.fi · FI · Otherransomkrybit reclama a www.apsanet.com.ar · AR · Professional Servicesransomqilin reclama a Service Evaluation Concepts · US · Professional Servicesransomqilin reclama a tommer construction · US · Manufacturing
← Todos los CVEs
CVE Watch11 ago 2026

CVE-2026-70344

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

CVSS

7.8

Alto

EPSS

KEV

Exploit Today

0-100

Publicado: 11 ago 2026 · Última mod.: 11 ago 2026 · CWE-121

EPSS · 30d

Sin historial EPSS suficiente todavía.

Descripción técnica

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

Referencias oficiales
CVEs relacionados
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2024-140426.3 MED
A vulnerability was found in Open5GS up to 2.7.1. This affects the function hss_ogs_diam_s6a_air_cb/hss_ogs_diam_s6a_ulr_cb of the file src/hss/hss-s6a-path.c of the component Diameter S6a Interface. Performing a manipulation of the argument os.len results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been made public and could be used. Upgrading to version 2.7.2 is able to mitigate this issue. The patch is named e89aa79efe629ae90f59dcdf8847c117d9a7da86. It is suggested to upgrade the affected component.4h
CVE-2026-703467.8 ALT
Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.2h
CVE-2026-688177.8 ALT
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.6h
CVE-2026-688167.8 ALT
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.6h
CVE-2026-687957.8 ALT
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.6h
CVE-2026-668077.8 ALT
Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.6h