Remote Code Execution Vulnerability in Microsoft Surface Products
CVE-2026-54120
9.9CRITICAL
What is CVE-2026-54120?
An improper input validation flaw exists within Microsoft Surface products, enabling an authorized attacker to potentially execute arbitrary code over a network. This vulnerability highlights the importance of robust input validation mechanisms to safeguard against unauthorized access and execution risks.
Affected Version(s)
Surface Management Services -