Privilege Escalation Vulnerability in Windows Win32K by Microsoft
CVE-2026-57095

6.2MEDIUM

What is CVE-2026-57095?

A vulnerability in Windows Win32K can expose sensitive information to unauthorized users, enabling them to locally elevate their privileges. This flaw could allow attackers to manipulate system permissions and access restricted areas of the operating system, posing a significant security risk to users whose systems are left unprotected. It is crucial for users to apply the latest patches and updates from Microsoft to mitigate potential threats.

Affected Version(s)

Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.9339

Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.9020

Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7548

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.