AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-26684

MEDIUM · CVSS 6.7 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-05-13 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.7. It affects Microsoft.

CVE
CVE-2025-26684
Severity
MEDIUM
CVSS
6.7
EPSS
0.40%
Microsoft

Original NVD Description

External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)