Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4500 articles · 223826 vulns · 37/41 feeds (7d)
← Back to list
7.0
CVE-2026-68820KEVEXPLOITEDPATCHED
microsoft · windows_10_1607

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Description

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Affected Products

VendorProductVersions
microsoftwindows_10_160710.0.14393.0, 10.0.17763.0, 10.0.19044.0, 10.0.19045.0, 10.0.22631.0, 10.0.22631.0, 10.0.26100.0, 10.0.26200.0, 10.0.28000.0, 6.2.9200.0, 6.2.9200.0, 6.3.9600.0, 6.3.9600.0, 10.0.14393.0, 10.0.14393.0, 10.0.17763.0, 10.0.17763.0, 10.0.20348.0, 10.0.26100.0, 10.0.26100.0

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
googlegoogle cloudcert_advisory90%
lenovolenovo computercert_advisory90%
microsoftwindowscert_advisory90%
microsoftmicrosoft windows server 2012 r2cert_advisory90%
microsoftwindows_10_1809cve_cpe95%

References

  • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68820(vendor-advisory, patch)

Related News (22 articles)

Tier B
JPCERT/CC
Security Alert: Microsoft Releases August 2026 Security Updates
→ No new info (linked only)
Tier E
Reddit r/cybersecurity28d ago
Lazarus Exploited a Windows Zero-Day: Inside CVE-2026-68820 and AFD.sys
→ No new info (linked only)
Tier C
Qualys Blog40d ago
CVE-2026-68820 is in KEV. Here Is What CISA BOD 26-04 Actually Requires Now
→ No new info (linked only)
Tier B
CERT-FR42d ago
Bulletin d'actualité CERTFR-2026-ACT-035 (17 août 2026)
→ No new info (linked only)
Tier D
Infosecurity Magazine46d ago
Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day
→ No new info (linked only)
Tier D
The Record46d ago
Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery
→ No new info (linked only)
Tier D
Help Net Security46d ago
Lazarus hackers pair fake job offers with Windows zero-day exploit
→ No new info (linked only)
Tier D
Help Net Security46d ago
Microsoft patches 400+ vulnerabilities, one zero-day under attack (CVE-2026-68820)
→ No new info (linked only)
Tier D
SecurityWeek46d ago
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
→ No new info (linked only)
Tier D
Infosecurity Magazine46d ago
Microsoft Fixes 400 Flaws on August Patch Tuesday
→ No new info (linked only)
Tier B
BSI Advisories46d ago
[NEU] [kritisch] Microsoft Windows Produkte: Mehrere Schwachstellen
→ No new info (linked only)
Tier D
Heise Security46d ago
Patchday: Angreifer attackieren Windows und verschaffen sich System-Rechte
→ No new info (linked only)
Tier D
CSO Online47d ago
Patch Tuesday August 2026: A zero-day WinSock driver hole under exploit, and a maximum severity SAP vulnerability
→ No new info (linked only)
Tier B
CERT-FR47d ago
Multiples vulnérabilités dans Microsoft Windows (12 août 2026)
→ No new info (linked only)
Tier C
VulDB47d ago
CVE-2026-68820 | Microsoft Windows up to Server 2025 Ancillary Function Driver for WinSock use after free
→ No new info (linked only)
Tier C
Cisco Talos47d ago
Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities
→ No new info (linked only)
Tier C
Qualys Blog47d ago
Microsoft Patch Tuesday, August 2026 Security Update Review
→ No new info (linked only)
Tier D
The Hacker News47d ago
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
→ No new info (linked only)
Tier D
SecurityWeek47d ago
August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day
→ No new info (linked only)
Tier D
BleepingComputer47d ago
Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days
→ No new info (linked only)
Tier A
Microsoft MSRC47d ago
CVE-2026-68820 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
→ No new info (linked only)
Tier C
CrowdStrike Blog47d ago
August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415 CVEs
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.17.0 HIGH
VectorCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
CISA KEV✅ Yes
Actively exploited✅ Yes
Patch available
10.0.14393.941810.0.17763.911510.0.19044.766310.0.19045.766310.0.22631.751710.0.26100.916810.0.26200.916810.0.28000.27046.2.9200.262796.3.9600.2333710.0.20348.549910.0.26100.33296
CWECWE-416
PublishedAug 11, 2026
Last enriched47d ago
Trending Score3
Source articles22
Independent17
Info Completeness5/14
Missing: vendor, product, versions, epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-85880EXPKEV
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Trending: 81
HIGHCVE-2026-65660
Microsoft SharePoint Server Remote Code Execution Vulnerability
Trending: 74
HIGHCVE-2026-70125
Microsoft Office Outlook Remote Code Execution Vulnerability
Trending: 33
HIGHCVE-2026-100208
Microsoft Office Outlook Remote Code Execution Vulnerability
Trending: 32
HIGHCVE-2026-66804
Microsoft Windows Cross Device Service Elevation of Privilege Vulnerability
Trending: 26

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Aug 11, 2026
Added to CISA KEV
Aug 11, 2026
Discovered by ZDM
Aug 11, 2026
Actively Exploited
Sep 25, 2026
Patch Available
Sep 25, 2026