漏洞列表 360566
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2026-26113
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code lo
HIGH 8.4 2026-03-10
microsoft 365_apps microsoft office +6个
NVD
CVE-2026-26112
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute c
HIGH 7.8 2026-03-10
microsoft 365_apps microsoft excel +4个
NVD
CVE-2026-26111
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unautho
HIGH 8.8 2026-03-10
microsoft windows_server_2012 microsoft windows_server_2012 +4个
NVD
CVE-2026-26110
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthor
HIGH 8.4 2026-03-10
microsoft 365_apps microsoft office +4个
NVD
CVE-2026-26109
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally
HIGH 8.4 2026-03-10
microsoft 365_apps microsoft excel +4个
NVD
CVE-2026-26108
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code
HIGH 7.8 2026-03-10
microsoft 365_apps microsoft excel +5个
NVD
CVE-2026-26107
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
HIGH 7.8 2026-03-10
microsoft 365_apps microsoft excel +4个
NVD
CVE-2026-26106
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute co
HIGH 8.8 2026-03-10
microsoft sharepoint_server microsoft sharepoint_server +1个
NVD
CVE-2026-26105
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Of
HIGH 8.1 2026-03-10
microsoft sharepoint_server microsoft sharepoint_server +1个
NVD
CVE-2026-25972
An improper neutralization of input during web page generation ('cross-site scripting') vulnerabilit
MEDIUM 4.3 2026-03-10
fortinet fortisiem fortinet fortisiem
NVD
CVE-2026-25836
An improper neutralization of special elements used in an os command ('os command injection') vulner
HIGH 7.2 2026-03-10
未知
NVD
CVE-2026-25689
An improper neutralization of argument delimiters in a command ('argument injection') vulnerability
MEDIUM 6.5 2026-03-10
fortinet fortideceptor fortinet fortideceptor
NVD
CVE-2026-25605
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected applica
MEDIUM 6.7 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25573
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected applica
HIGH 7.4 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25572
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The SICAM SIAPP SDK
MEDIUM 5.1 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25571
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The SICAM SIAPP SDK
MEDIUM 5.1 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25570
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The SICAM SIAPP SDK
HIGH 7.4 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25569
A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). An out-of-bounds wri
HIGH 7.4 2026-03-10
siemens sicam_siapp_sdk
NVD
CVE-2026-25190
Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
HIGH 7.8 2026-03-10
microsoft windows_10_1607 microsoft windows_10_1809 +13个
NVD
CVE-2026-25189
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges local
HIGH 7.8 2026-03-10
microsoft windows_10_1809 microsoft windows_10_21h2 +3个
NVD