SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-72985

MEDIUM · CVSS 6.8 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in Windows Volume Shadow Copy can be exploited by an unauthorized attacker with physical access to the system, allowing them to elevate privileges. This could lead to unauthorized control over the affected system, potentially compromising sensitive data and system integrity. Organizations using Windows systems, particularly those with physical access vulnerabilities, should prioritize addressing this issue to mitigate potential risks.

CVE
CVE-2026-72985
Severity
MEDIUM
CVSS
6.8
EPSS
0.31%
Windows

Original NVD Description

Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges with a physical attack.