ZeroHour

CVE-2025-26684

CVSS 3.1
6.7 medium
EPSS
<1%p35
Published
()
Modified
Description

External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

Vendors
microsoft
Products
defender for endpoint
Weakness
CWE-73, CWE-610
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news