PoC Archive PoC Archive

tag

Windows

Next.js Windows Cache Path Traversal RCE (CVE-2026-75604)
CVE-2026-75604 web Unverified
CVE-2026-75604webCRITICAL 9Unverified2026-09-03Windows Media Player DLL Hijack -- Local Privilege Escalation (CVE-2026-21508)
CVE-2026-21508 binary Patched
CVE-2026-21508binaryHIGH 7.8Patched2026-08-16Microsoft SCCM — AdminService CAB Extraction Path-Traversal to SYSTEM RCE (CVE-2026-47301)
CVE-2026-47301 network Unverified
CVE-2026-47301networkCRITICAL 9.8Unverified2026-08-15Windows Kerberos — ResetNightmare: Arbitrary Password Reset via Change Password Protocol Validation Flaw (CVE-2026-27912)
CVE-2026-27912 network Unverified
CVE-2026-27912networkHIGH 8Unverified2026-08-11Windows Defender — ShieldBreak: RoguePlanet (CVE-2026-50656) Patch Bypass via Cloud Files Rehydration + Object Manager Symlinks EPSS 11%
Bypass of CVE-2026-50656 (RoguePlanet); no CVE assigned to ShieldBreak as of 2026-08-11 binary Unpatched
Bypass of CVE-2026-50656binaryHIGH 7.8Unpatched2026-08-11Active Directory — SPN Unicode Collision Detection Scanner (CVE-2026-25177)
CVE-2026-25177 network Patched
CVE-2026-25177networkHIGH 8.8Patched2026-08-11Barrier 2.4.0 — barrierd.exe Unauthenticated IPC → SYSTEM Privilege Escalation (NotCVE-2026-0010)
NotCVE-2026-0010 (disputed CVE assignment — author contests the identifier) binary Unverified
NotCVE-2026-0010binaryHIGHUnverified2026-08-01Windows WalletService Known-Folder Redirection → ESE Persisted-Callback DLL Load Local Privilege Escalation (CVE-2026-49176)
CVE-2026-49176 binary Patched
CVE-2026-49176binaryHIGH 7.8Patched2026-07-27Windows Message Queuing (MSMQ) Queue Manager Heap-Based Buffer Overflow (CVE-2026-54992)
CVE-2026-54992 network Patched
CVE-2026-54992networkHIGH 8.4Patched2026-07-27GreatXML — WinRE / Defender Offline-Scan Trust-Boundary Abuse → BitLocker Bypass (No CVE)
N/A (no CVE assigned, no Microsoft advisory as of 2026-07-27) binary Unpatched
N/AbinaryHIGHUnpatched2026-07-27AD CS/AD FS Enrollment "cdc" Chase Attribute Abuse → Domain Controller Impersonation (CertiGhost, CVE-2026-54121)
CVE-2026-54121 network Patched
CVE-2026-54121networkHIGH 8.8Patched2026-07-27LegacyHive - Windows user profile service arbitrary hive load elevation of privileges vulnerability
binary Patched
—binaryHIGHPatched2026-07-19React Native Community CLI Metro Dev Server `/open-url` OS Command Injection (CVE-2025-11953) KEV EPSS 94%
CVE-2025-11953 network Patched
CVE-2025-11953networkCRITICAL 9.8Patched2026-07-06XIGNCODE3 Anti-Cheat Driver PPL-Bypass LSASS Credential Dump (CVE-2026-3609)
CVE-2026-3609 binary Patched
CVE-2026-3609binaryHIGHPatched2026-07-05Windows ShellLink (.lnk) Remote Code Execution — CVE-2026-21510 LNK-Stomping Generator KEV EPSS 26%
CVE-2026-21510 social-engineering Unverified
CVE-2026-21510social-engineeringHIGHUnverified2026-07-05Windows Shell LNK _IDCONTROLW Zero-Click SMB Coercion Builder — CVE-2026-32202 KEV EPSS 64%
CVE-2026-32202 (related: CVE-2026-21510) binary Unverified
CVE-2026-32202binaryHIGHUnverified2026-07-05Windows Push Notification Service Use-After-Free Race (CVE-2026-42978)
CVE-2026-42978 binary Unverified
CVE-2026-42978binaryHIGH 7.8Unverified2026-07-05Windows Kernel Local Privilege Escalation via SeDebugPrivilege Bit Corruption (CVE-2026-40369)
CVE-2026-40369 binary Unverified
CVE-2026-40369binaryHIGHUnverified2026-07-05Windows HTTP.sys Header-Count-Triggered Kernel Memory Corruption / BSOD (CVE-2026-49160) EPSS 54%
CVE-2026-49160 binary Patched
CVE-2026-49160binaryHIGHPatched2026-07-05Windows Error Reporting Service ALPC Local Privilege Escalation (CVE-2026-20817)
CVE-2026-20817 binary Unverified
CVE-2026-20817binaryHIGHUnverified2026-07-05Notepad++ nativeLang.xml Format String Crash / Info Disclosure — CVE-2026-3008
CVE-2026-3008 binary Unverified
CVE-2026-3008binaryMEDIUMUnverified2026-07-05MiniTool pwdrvio.sys Kernel Write-What-Where — Local Privilege Escalation Primitive (CVE-2026-36981)
CVE-2026-36981 binary Patched
CVE-2026-36981binaryHIGHPatched2026-07-05MiniTool pwdrvio.sys Kernel Driver Buffer Overflow — Local DoS/BSOD (CVE-2026-36980)
CVE-2026-36980 binary Patched
CVE-2026-36980binaryMEDIUMPatched2026-07-05Microsoft Defender Link Following Local Privilege Escalation (CVE-2026-41091) KEV
CVE-2026-41091 binary Unpatched
CVE-2026-41091binaryHIGH 7.8Unpatched2026-07-05Lenovo LDE (LdeApi.Server.exe) Unimpersonated Junction-Based Arbitrary File Write to SYSTEM (CVE-2026-0827)
CVE-2026-0827 (Lenovo advisory LEN-210693) binary Unverified
CVE-2026-0827binaryHIGHUnverified2026-07-05KillChain — Vulnerable Kernel Driver IOCTL Protected-Process Termination (CVE-2026-0828)
CVE-2026-0828 binary Unverified
CVE-2026-0828binaryHIGHUnverified2026-07-05Discord Desktop Client Uncontrolled Search Path Element / Local Code Execution (CVE-2026-0776)
CVE-2026-0776 (ZDI-CAN-27057, credit: Trend Micro Zero Day Initiative) binary Unverified
CVE-2026-0776binaryHIGH 7.3Unverified2026-07-05Balena Etcher Windows TOCTOU Privilege Escalation — CVE-2026-30332
CVE-2026-30332 binary Unverified
CVE-2026-30332binaryHIGHUnverified2026-07-05ASUS DriverHub Update TOCTOU Local Privilege Escalation — CVE-2026-1880
CVE-2026-1880 binary Patched
CVE-2026-1880binaryMEDIUMPatched2026-07-05Apache Solr UNC Path Validation Bypass to RCE (CVE-2026-22444)
CVE-2026-22444 web Patched
CVE-2026-22444webCRITICALPatched2026-07-05Amazon WorkSpaces Skylight Workspace Config Service Local Privilege Escalation (CVE-2026-7791)
CVE-2026-7791 cloud Unverified
CVE-2026-7791cloudHIGHUnverified2026-07-05VLC Bundled FFmpeg VP9 Decoder Resolution-Change Heap Crash
None assigned as of 2026-07-03 binary Unverified
None assigned as of 2026-07-03binaryMEDIUMUnverified2026-07-03System Informer phsvc Trusted-Host Confused Deputy LPE
None assigned as of 2026-07-03 binary Unverified
None assigned as of 2026-07-03binaryHIGHUnverified2026-07-03OpenVPN Connect Server-Pushed Option Current-User Command Execution
None assigned as of 2026-07-03 network Unverified
None assigned as of 2026-07-03networkHIGHUnverified2026-07-03libssh2 Publickey Subsystem List Parser Heap Corruption to Code Execution
None assigned as of 2026-07-03 network Unverified
None assigned as of 2026-07-03networkCRITICALUnverified2026-07-03ImageMagick Ghostscript Delegate Search Path Hijack
None assigned as of 2026-07-03 binary Unverified
None assigned as of 2026-07-03binaryHIGHUnverified2026-07-03Flowise Custom MCP Environment Variable Case Bypass
None assigned as of 2026-07-03 web Unverified
None assigned as of 2026-07-03webHIGHUnverified2026-07-03AnyDesk Printer Pipe COM Impersonation Local Privilege Escalation
None assigned as of 2026-07-03 binary Unverified
None assigned as of 2026-07-03binaryHIGHUnverified2026-07-037-Zip RAR5 Mark-of-the-Web / ADS Full-Chain Bypass
None assigned as of 2026-07-03 misc Unverified
None assigned as of 2026-07-03miscHIGHUnverified2026-07-03Windows CTFMON Arbitrary Section Object EoP — GreenPlasma (CVE-2026-45586)
CVE-2026-45586 binary Patched
CVE-2026-45586binaryHIGH 7.8Patched2026-06-28Notepad++ <= 8.9.6 Multiple Vulnerabilities (CVE-2026-48770, CVE-2026-48778, CVE-2026-48800)
CVE-2026-48770, CVE-2026-48778, CVE-2026-48800 binary Patched
CVE-2026-48770, CVE-2026-48778, CVE-2026-48800binaryHIGH 5Patched2026-05-28Windows NTLM Hash Disclosure via File Explorer - CVE-2025-24054 KEV EPSS 59%
CVE-2025-24054 binary Unverified
CVE-2025-24054binaryMEDIUM 6.5Unverified2026-05-17Windows MMC MSC EvilTwin - CVE-2025-26633 KEV RW EPSS 30%
CVE-2025-26633 binary Unverified
CVE-2025-26633binaryHIGHUnverified2026-05-17ToolShell - SharePoint Unauthenticated RCE Chain KEV RW EPSS 100%
CVE-2025-53770, CVE-2025-53771, CVE-2025-49704, CVE-2025-49706 web Patched
CVE-2025-53770, CVE-2025-53771, CVE-2025-49704, CVE-2025-49706webCRITICALPatched2026-05-17Windows OLE Zero-Click RCE via Outlook RTF (CVE-2025-21298) EPSS 81%
CVE-2025-21298 binary Patched
CVE-2025-21298binaryCRITICAL 9.8Patched2026-05-16Adobe Acrobat/Reader Prototype Pollution Sandbox Escape (CVE-2026-34621) KEV
CVE-2026-34621 binary Unverified
CVE-2026-34621binaryCRITICAL 9.8Unverified2026-05-16WinRAR Archive Extraction Path Traversal (CVE-2025-6218) KEV EPSS 90%
CVE-2025-6218 misc Unverified
CVE-2025-6218miscHIGHUnverified2026-05-15MiniPlasma - Windows Cloud Files Mini Filter Driver LPE (CVE-2020-17103) EPSS 27%
CVE-2020-17103 binary Patched
CVE-2020-17103binaryHIGH 7.8Patched2026-05-15HTTP Protocol Stack Remote Code Execution Vulnerability (CVE-2021-31166) KEV EPSS 100%
CVE-2021-31166 network Patched
CVE-2021-31166networkCRITICAL 9.8Patched2026-05-15CVE-2024-21338 — Local Privilege Escalation from Admin to Kernel KEV RW EPSS 60%
CVE-2024-21338 binary Patched
CVE-2024-21338binaryHIGH 7.8Patched2026-05-15