Security & Threat Intelligence · 24.08.2026, 21:46 UTC
ZDI-26-606: Microsoft Windows Compatibility Appraiser Link Following Local Privilege Escalation Vulnerability
| Schweregrad | high |
|---|---|
| CVSS | 7.0 |
| Kategorie | Security & Threat Intelligence |
| Quelle | Zero Day Initiative ↗ |
| Veröffentlicht | 24.08.2026 UTC |
Sicherheitsmeldung mit Schweregrad hoch (CVSS 7.0). Technische Details im Tab „Originaltext“; empfohlene Schritte in der Checkliste.
This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code in the context of LOCAL SERVICE on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.0.
Maßnahmen
⬇ Als MarkdownVerwandte Beiträge
- low ZDI-26-605: Microsoft Windows Localized Filenames Improper Input Validation NTLM Response Information Disclosure Vulnerability
- info Amazon Aurora now supports PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23
- info Amazon RDS for MySQL now supports new minor version 8.4.11
- info OpenAI GPT-5.6 Terra and Luna now available on Amazon Bedrock in AWS GovCloud (US)