

Microsoft heeft kwetsbaarheden verholpen in Windows Een kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volge…
Published:
13 January 2026 at 19:16:30
Alert date:
13 January 2026 at 20:04:16
Source:
ncsc.nl
Operating Systems
Microsoft patched numerous vulnerabilities in Windows affecting various components including Secure Boot bypass, zero-day exploitation, and privilege escalation flaws. CVE-2026-21265 allows Secure Boot bypass and is publicly discussed. CVE-2026-20805 was exploited as zero-day requiring local access. CVE-2023-31096 affects older Broadcom modem drivers with known PoC code. The update addresses critical vulnerabilities in Windows Management Services, RRAS, and other core components with CVSS scores up to 8.8. Multiple privilege escalation and arbitrary code execution vulnerabilities were resolved across kernel, graphics, and system services.
Technical details
Mitigation steps:
Affected products:
Microsoft Windows
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.

