AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-14478

HIGH · CVSS 7.8 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A vulnerability exists that allows a local low-privileged attacker to execute a malicious executable, enabling them to inject unauthenticated IPC messages into named pipes and alter pipe permissions or ownership. This could compromise the confidentiality, integrity, and availability of the affected system. Organizations using products susceptible to this vulnerability should prioritize remediation to mitigate potential exploitation risks.

CVE
CVE-2026-14478
Severity
HIGH
CVSS
7.8
EPSS
0.10%

Original NVD Description

A maliciously created executable, when executed on the victim's machine, may allow a local low-privileged attacker to inject unauthenticated IPC messages into named pipes, modify pipe permissions or ownership, and potentially impact confidentiality, integrity, and availability.