SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-48572

HIGH · CVSS 7 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A race condition vulnerability in Windows App Installer allows authorized attackers to exploit improper synchronization of shared resources, potentially leading to local privilege escalation. This high-severity flaw could enable attackers to gain elevated access to system resources, making it critical for organizations using affected Windows versions to prioritize patching and mitigation efforts. System administrators and security teams should focus on this vulnerability to safeguard against potential exploitation.

CVE
CVE-2026-48572
Severity
HIGH
CVSS
7
EPSS
0.16%
Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)