AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-70304

MEDIUM · CVSS 6.7 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in Windows DNS can be exploited by an authorized attacker to elevate their privileges locally, potentially allowing them to execute arbitrary code with elevated permissions. Organizations using affected Windows systems should prioritize patching this vulnerability to mitigate the risk of unauthorized access and privilege escalation.

CVE
CVE-2026-70304
Severity
MEDIUM
CVSS
6.7
EPSS
0.33%
Windows

Original NVD Description

Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.