Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 10.0.28000.0 (custom) before 10.0.28000.1575
affected
10.0.28000.0 (custom) before 10.0.28000.1575
affected
10.0.26100.0 (custom) before 10.0.26100.32370
affected
10.0.26200.0 (custom) before 10.0.26200.7840
affected
10.0.22631.0 (custom) before 10.0.22631.6649
affected
10.0.22631.0 (custom) before 10.0.22631.6649
affected
10.0.25398.0 (custom) before 10.0.25398.2149
affected
10.0.26100.0 (custom) before 10.0.26100.7840
affected
10.0.26100.0 (custom) before 10.0.26100.32370
affected
Description
Untrusted pointer dereference in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.
Problem types
CWE-822: Untrusted Pointer Dereference
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21232 (Windows HTTP.sys Elevation of Privilege Vulnerability)