Elevation of Privilege Vulnerability in Windows Authentication by Microsoft
CVE-2026-25171
7HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 10 March 2026
What is CVE-2026-25171?
A use after free vulnerability in Windows Authentication Methods can allow an authorized attacker to gain elevated privileges locally. This issue arises from insufficient validation of existing memory, potentially allowing unauthorized access to sensitive resources. Organizations are encouraged to apply available patches to mitigate the risks associated with this vulnerability.
Affected Version(s)
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.8957
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.8511
Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7058