Remote Code Execution in Windows iSCSI
CVE-2026-69598
8.8HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-69598?
A vulnerability in Windows iSCSI allows an attacker to exploit incorrect buffer size calculations, enabling unauthorized remote code execution. This flaw can be leveraged over a network, posing a serious risk as it grants attackers the ability to execute arbitrary code on affected systems. Microsoft has released an advisory addressing this issue, highlighting the importance of applying the relevant patches to mitigate potential attacks.
Affected Version(s)
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.9512
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.9245
Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7725