SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-62727

HIGH · CVSS 7 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The Windows Telephony Service is vulnerable to a race condition due to improper synchronization, allowing an authorized attacker to exploit this flaw to elevate their privileges locally. This could enable the attacker to gain unauthorized access to sensitive system functions or data. Organizations using affected Windows products should prioritize patching this vulnerability to mitigate the risk of privilege escalation attacks.

CVE
CVE-2026-62727
Severity
HIGH
CVSS
7
EPSS
0.18%
Windows

Original NVD Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

Related CVEs

Other vulnerabilities affecting the same vendor(s)