Uncontrolled Search Path Weakness in Windows Remote Help by Microsoft
CVE-2026-55015

5.5MEDIUM

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
20 August 2026

What is CVE-2026-55015?

The weakness in Windows Remote Help arises from an uncontrolled search path element, which allows an authorized attacker to intentionally disrupt services on the local machine. This vulnerability can be exploited without requiring extensive knowledge, enabling potential service denials that could hinder legitimate user access and functionality.

Affected Version(s)

Windows Remote Help 5.0.0.0 < 5.2.1040.0

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.