CyberRota Analysis
AI-GeneratedA vulnerability in the Windows HTTP.sys component allows authorized attackers to exploit an integer overflow or wraparound, potentially leading to local privilege escalation. This could enable attackers to gain elevated access to system resources and execute arbitrary code with higher privileges. Organizations using affected Windows systems should prioritize patching this vulnerability to mitigate the risk of unauthorized access and system compromise.
CVE
CVE-2026-61937
Severity
HIGH
CVSS
7.8
EPSS
0.31%
Windows
Original NVD Description
Integer overflow or wraparound in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
Related CVEs
Other vulnerabilities affecting the same vendor(s)