SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-58598

HIGH · CVSS 7 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A race condition vulnerability in the Windows Backup Engine allows authorized attackers to exploit improper synchronization of shared resources, potentially leading to local privilege escalation. This high-severity flaw poses a significant risk to systems running Windows, particularly in environments where users have varying levels of access. Organizations using affected Windows versions should prioritize patching to mitigate the risk of unauthorized privilege escalation.

CVE
CVE-2026-58598
Severity
HIGH
CVSS
7
EPSS
0.19%
Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Backup Engine allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)