Vulnerabilidad · Publicado 14/07/2026 · Actualizado 01/08/2026
Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally.
Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally.
Score: 7.8/10 — Severidad: HIGH — Estado NIST: Analyzed
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Windows 10 1809, Windows 10 21h2, Windows 10 22h2, Windows 11 24h2, Windows 11 25h2 — Microsoft
CWE-285, CWE-1220
Publicado en NIST NVD.