CVE-2026-65791Patch(microsoft / windows_10_1607)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft windows_10_1607 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Heap-based buffer overflow in Windows iSCSI Target Service allows an unauthorized attacker to execute code over a network.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-122

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1607
  • windows_10_1809
  • windows_server_2012
  • windows_server_2016

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-08-18); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
windows_10_1607windows_10_1809windows_server_2012windows_server_2016windows_server_2019windows_server_2022windows_server_2025

2 versions affected across 7 products

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-08-18: 1Mentions · 2026-08-21: 1Mentions · 2026-08-30: 1Patch / Workaround · 2026-08-18: 1Technical Details · 2026-08-18: 108-1808-2108-30
Signal classification3 categories
Patch
133.3%
Disclosure
133.3%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-08-181
Patch1
2026-08-211
Disclosure1
2026-08-301
General1
Full discourse3 posts
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Disclosure

    【緊急】CVE-2026-65791 マイクロソフトのMicrosoft Windows 10 1607に深刻な脆弱性|即時対応が必要 https://www.cybernote.click/2026/08/18/cve-2026-65791-microsoft-windows-10-1607/ #IT #Security #cybersecurity

    Post summary

    The message serves as an urgent alert announcing CVE‑2026‑65791 as a serious vulnerability in Windows 10 1607, but it does not provide detailed technical data, exploitation code, or patch information.

    0001059
    208 followersView on X
  • Juha Jurvanen@Jufflan
    General

    Scantide vulnerability intelligence for CVE-2026-65791 https://www.scantide.com/vulnerability/CVE-2026-65791

    Post summary

    The text simply points to a Scantide vulnerability intelligence page for CVE‑2026‑65791 without providing additional details, evidence of exploitation, or remediation information.

    0000061
    552 followersView on X
  • Windows Forum@windowsforum
    Patch

    🚨 Windows iSCSI Target has a Critical heap overflow allowing unauthenticated remote code execution. If your server is exposing storage, patch now—“just one crafted packet” is not a backup strategy. https://windowsforum.com/security-alerts.84/cve-2026-65791-windows-iscsi-target-service-remote-code-execution-vulnerability.443091/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #MicrosoftSecurity #Msrc #Cve202665791 https://t.co/XqAeKyd1Z4

    Post summary

    Windows iSCSI Target suffers from a critical heap overflow that enables unauthenticated remote code execution; users are urged to apply the patch immediately.

    0000097
    1.3K followersView on X
CPE platform detail10 entries

10 of 10 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1607--x64
OSmicrosoftwindows_10_1607--x86
OSmicrosoftwindows_10_1809--x64
OSmicrosoftwindows_10_1809--x86
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2025---

Explore more