CyberRota Analysis
AI-GeneratedImproper authentication in ActivityTaskManagerService prior to the September 2026 Release 1 allows local privileged attackers to execute arbitrary activities on affected systems. This vulnerability poses a medium risk as it could lead to unauthorized access and manipulation of system functions. Organizations utilizing the impacted products should prioritize remediation to mitigate potential exploitation by local attackers.
CVE
CVE-2026-21097
Severity
MEDIUM
CVSS
6.7
EPSS
0.12%
Original NVD Description
Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows local privileged attackers to launch arbitrary activity.
Related CVEs
Other vulnerabilities affecting the same vendor(s)