SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-40145

HIGH · CVSS 7.1 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-08-17 · Last synced 2026-09-16

CyberRota Analysis

AI-Generated

A vulnerability in the Endpoint Privilege Management support utility for Windows can lead to inadequate enforcement of tamper protection controls under specific conditions. This flaw could allow unauthorized modifications to the utility process, potentially compromising system integrity and security. Organizations using Windows systems with this utility should prioritize remediation to mitigate risks associated with privilege escalation and unauthorized access.

CVE
CVE-2026-40145
Severity
HIGH
CVSS
7.1
EPSS
0.13%
Windows

Original NVD Description

A vulnerability exists in the interaction between a Endpoint Privilege Management (Windows Deployment) support utility and the agent's tamper protection controls. Under certain conditions, the protections applied to the utility process may not be enforced as intended.