SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-72967

HIGH · CVSS 7.8 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in the Windows Network Connection Broker allows authorized attackers to escalate their privileges locally, potentially leading to unauthorized access and control over system resources. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of exploitation. Given its high severity rating, immediate attention is recommended for environments with sensitive data or critical operations.

CVE
CVE-2026-72967
Severity
HIGH
CVSS
7.8
EPSS
0.32%
Windows

Original NVD Description

Heap-based buffer overflow in Windows Network Connection Broker allows an authorized attacker to elevate privileges locally.