SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-21097

MEDIUM · CVSS 6.7 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

Improper authentication in ActivityTaskManagerService prior to the September 2026 Release 1 allows local privileged attackers to execute arbitrary activities on affected systems. This vulnerability poses a medium risk as it could lead to unauthorized access and manipulation of system functions. Organizations utilizing the impacted products should prioritize remediation to mitigate potential exploitation by local attackers.

CVE
CVE-2026-21097
Severity
MEDIUM
CVSS
6.7
EPSS
0.12%

Original NVD Description

Improper authentication in ActivityTaskManagerService prior to SMR Sep-2026 Release 1 allows local privileged attackers to launch arbitrary activity.

Related CVEs

Other vulnerabilities affecting the same vendor(s)