AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-62832

HIGH · CVSS 7.8 EPSS 2.37%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The vulnerability in the Windows User Profile Service allows an authorized attacker to exploit improper link resolution before file access, enabling them to elevate their privileges locally. This poses a significant risk to systems where user profiles are managed, as it could lead to unauthorized access and control over sensitive data. Organizations using affected Windows versions should prioritize patching this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-62832
Severity
HIGH
CVSS
7.8
EPSS
2.37%
Windows

Original NVD Description

Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)