Home
HIGH: 7.3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L/E:U/RL:O/RC:C 10.0.0 (custom) before 10.0.8
affected
8.0.0 (custom) before 8.0.27
affected
9.0.0 (custom) before 9.0.16
affected
3.5.0 (custom) before 4.8.9334.0 and 4.8.4802.0
affected
4.7.0 (custom) before 4.8.9334.0 and 4.8.4802.0
affected
4.8.0 (custom) before 4.8.9334.0 and 4.8.4802.0
affected
4.8.1 (custom) before 4.8.9334.0 and 4.8.4802.0
affected
4.8.0 (custom) before 4.8.9334.0 and 4.8.4802.0
affected
Description
Improper input validation in .NET allows an unauthorized attacker to elevate privileges locally.
Problem types
CWE-20: Improper Input Validation
CWE-190: Integer Overflow or Wraparound
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2026-35433 (.NET Elevation of Privilege Vulnerability)