Threat Advisory

Windows IKE Flaw Grants Code Execution Over Network

Threat: Vulnerability
Targeted Region: Global
Targeted Sector: Technology & IT
Criticality: Critical
[subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

Multiple security vulnerabilities affecting Unknown versions The flaws span Windows, on-premises SharePoint, VMware vCenter, and macOS have been identified in Microsoft Windows, SharePoint Enterprise Server, VMware vCenter and macOS due to exploitation of four flaws added to the CISA Known Exploited Vulnerabilities Catalog on August 18, 2026. These vulnerabilities are rated with a severity score of 9.1 or higher, affecting widely deployed enterprise systems and posing a large blast radius. The affected versions include Microsoft Windows 10 Version 1607, various SharePoint Enterprise Server versions, VMware vCenter, and macOS.

CVE-2026-33824 (CVSS 9.8 — Critical): This vulnerability exploits a double free in the Windows IKE service to run code over a network.[/subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

Multiple security vulnerabilities affecting Unknown versions The flaws span Windows, on-premises SharePoint, VMware vCenter, and macOS have been identified in Microsoft Windows, SharePoint Enterprise Server, VMware vCenter and macOS due to exploitation of four flaws added to the CISA Known Exploited Vulnerabilities Catalog on August 18, 2026. These vulnerabilities are rated with a severity score of 9.1 or higher, affecting widely deployed enterprise systems and posing a large blast radius. The affected versions include Microsoft Windows 10 Version 1607, various SharePoint Enterprise Server versions, VMware vCenter, and macOS.

CVE-2026-33824 (CVSS 9.8 — Critical): This vulnerability exploits a double free in the Windows IKE service to run code over a network.[emaillocker id="1283"]

CVE-2026-55040 (CVSS 9.1 — High): This bug chains four weak checks to forge a valid token in SharePoint, allowing an attacker to gain unauthorized access.

CVE-2026-59310 (CVSS 9.8 — Critical): This flaw exploits a path traversal bug in the vCenter Syslog server, allowing an attacker to reach sensitive information.

CVE-2026-65400 (CVSS 9.8 — Critical): This vulnerability allows a network attacker to reach macOS Screen Sharing without valid credentials, enabling unauthorized access to the system.

RECOMMENDATION:

We recommend you to update Windows IKE Service Extensions to version 10.0.14393.9060.

REFERENCES:

The following reports contain further technical details:

[/emaillocker]
crossmenu