CVE-2026-32077
HIGHUntrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
Published: 4/14/2026Modified: 5/26/2026
Related Intelligence (0)
No articles currently reference this CVE.
References (3)
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32077Vendor Advisoryhttps://www.vicarius.io/vsociety/posts/cve-2026-32077-detection-script-elevation-of-privilege-vulnerability-affecting-windows-upnphttps://www.vicarius.io/vsociety/posts/cve-2026-32077-mitigation-script-elevation-of-privilege-vulnerability-affecting-windows-upnp