ZeroHour

CVE-2026-26183

CVSS 3.1
7.8 high
EPSS
<1%p17
Published
()
Modified
Description

Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.

Vendors
microsoft
Products
windows server 2012, windows server 2016, windows server 2019, windows server 2022, windows server 2022 23h2, windows server 2025
Weakness
CWE-284
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.