CyberRota Analysis
AI-GeneratedWindows Universal Plug and Play (UPnP) Device Host is vulnerable to unauthorized information disclosure, allowing an attacker with local access to expose private personal information. Organizations using affected Windows systems should prioritize addressing this vulnerability to mitigate potential data breaches. Users with sensitive data or those in regulated industries are particularly at risk and should take immediate action.
CVE
CVE-2026-69351
Severity
MEDIUM
CVSS
5.5
EPSS
0.47%
Windows
Original NVD Description
Exposure of private personal information to an unauthorized actor in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally.