SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-49794

MEDIUM · CVSS 4.6 EPSS 0.35%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

The Windows USB Audio Class driver (usbaudio.sys) contains an out-of-bounds read vulnerability that can be exploited by an unauthorized attacker with physical access to the system, potentially leading to information disclosure. Organizations utilizing Windows systems, especially those with accessible USB ports, should prioritize addressing this vulnerability to mitigate risks associated with physical attacks.

CVE
CVE-2026-49794
Severity
MEDIUM
CVSS
4.6
EPSS
0.35%
Windows

Original NVD Description

Out-of-bounds read in Windows USB Audio Class driver (usbaudio.sys) allows an unauthorized attacker to disclose information with a physical attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)