SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-69377

HIGH · CVSS 7.8 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in Windows Modern Device Management (MDM) permits an authorized attacker to exploit missing authorization controls, enabling local privilege escalation. This could allow the attacker to gain elevated access to system resources and sensitive data. Organizations using Windows MDM should prioritize addressing this issue to mitigate potential risks to their systems and data integrity.

CVE
CVE-2026-69377
Severity
HIGH
CVSS
7.8
EPSS
0.28%
Windows

Original NVD Description

Missing authorization in Windows Modern Device Management (MDM) allows an authorized attacker to elevate privileges locally.