SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-68845

HIGH · CVSS 7.8 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in the Windows Program Compatibility Assistant Service allows authorized attackers to escalate their privileges locally. This high-severity flaw could enable attackers to execute arbitrary code with elevated permissions, potentially compromising system integrity. Organizations using affected Windows products should prioritize patching to mitigate the risk of local privilege escalation attacks.

CVE
CVE-2026-68845
Severity
HIGH
CVSS
7.8
EPSS
0.32%
Windows

Original NVD Description

Heap-based buffer overflow in Windows Program Compatibility Assistant Service allows an authorized attacker to elevate privileges locally.