CVSS7.8
Severityhigh
WeaknessCWE-306
ExploitedNot in CISA KEV
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges locally.
microsoft · windows 10 1607
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges locally.
No stories yet. This page updates automatically when we publish reporting that references CVE-2026-42976.