SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-49803

HIGH · CVSS 7 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

A race condition vulnerability in the Windows AppX Deployment Service allows authorized attackers to exploit improper synchronization of shared resources, leading to potential local privilege escalation. This flaw could enable attackers to gain elevated access to system resources, posing a significant risk to system integrity. Organizations using affected Windows products should prioritize remediation efforts to mitigate the risk of exploitation.

CVE
CVE-2026-49803
Severity
HIGH
CVSS
7
EPSS
0.15%
Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows AppX Deployment Service allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)