SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-54120

CRITICAL · CVSS 9.9 EPSS 0.71%

Source: NVD + CISA KEV + EPSS · Published 2026-07-24 · Last synced 2026-08-23

CyberRota Analysis

AI-Generated

Microsoft Surface devices are vulnerable due to improper input validation, enabling authorized attackers to execute arbitrary code remotely. This critical vulnerability poses a significant risk as it can lead to unauthorized access and control over affected systems. Organizations utilizing Microsoft Surface products should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-54120
Severity
CRITICAL
CVSS
9.9
EPSS
0.71%
Microsoft

Original NVD Description

Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)