Microsoft PowerShell是美国Microsoft公司的一款命令行脚本与自动化工具。 Microsoft PowerShell 7.4.0至7.4.19.0之前版本、7.5.0至7.5.10.0之前版本和7.6.0至7.6.5之前版本存在路径遍历漏洞,该漏洞源于相对路径遍历问题,可能导致未经授权的攻击者通过网络执行代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | PowerShell 7.4 | 7.4.0< 7.4.19.0 |
affected |
| Microsoft | PowerShell 7.5 | 7.5.0< 7.5.10.0 |
affected |
| Microsoft | PowerShell 7.6 | 7.6.0< 7.6.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | PowerShell 7.4 | 7.4.0 ~ 7.4.19.0 | - |
|
| Microsoft | PowerShell 7.5 | 7.5.0 ~ 7.5.10.0 | - |
|
| Microsoft | PowerShell 7.6 | 7.6.0 ~ 7.6.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-62893 | 9.8 CRITICAL | Windows Deployment Services TFTP Server Remote Code Execution Vulnerability |
| CVE-2026-59124 | 9.8 CRITICAL | Microsoft High Performance Computing (HPC) Pack Remote Code Execution Vulnerability |
| CVE-2026-62878 | 9.8 CRITICAL | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2026-62815 | 9.8 CRITICAL | Microsoft QUIC Remote Code Execution Vulnerability |
| CVE-2026-65791 | 9.8 CRITICAL | Windows iSCSI Target Service Remote Code Execution Vulnerability |
| CVE-2026-50516 | 9.4 CRITICAL | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
| CVE-2026-70306 | 9.3 CRITICAL | Microsoft Office SharePoint Spoofing Vulnerability |
| CVE-2026-62818 | 8.8 HIGH | Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability |
| CVE-2026-65807 | 8.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2026-70329 | 8.8 HIGH | Microsoft Outlook Remote Code Execution Vulnerability |
| CVE-2026-62800 | 8.8 HIGH | Windows SMBv3 Server Remote Code Execution Vulnerability |
| CVE-2026-65767 | 8.8 HIGH | Microsoft Teams for Android Spoofing Vulnerability |
| CVE-2026-62790 | 8.8 HIGH | Windows SMBv3 Server Remote Code Execution Vulnerability |
| CVE-2026-64921 | 8.8 HIGH | Microsoft SharePoint Server Elevation of Privilege Vulnerability |
| CVE-2026-70336 | 8.8 HIGH | Visual Studio Code Remote Code Execution Vulnerability |
| CVE-2026-57104 | 8.8 HIGH | Azure Storage Explorer Elevation of Privilege Vulnerability |
| CVE-2026-62824 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2026-62784 | 8.8 HIGH | Microsoft Local Security Authority Server (lsasrv) Remote Code Execution Vulnerability |
| CVE-2026-62785 | 8.8 HIGH | Windows LDAP - Lightweight Directory Access Protocol Remote Code Execution Vulnerability |
| CVE-2026-62872 | 8.8 HIGH | .NET Framework Elevation of Privilege Vulnerability |
Showing top 20 of 402 CVEs. View all on vendor page → →
No comments yet