SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-70585

HIGH · CVSS 7 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the ONCRPC XDR Driver of Windows Services for NFS allows an authorized attacker to execute arbitrary code locally on affected systems. This high-severity flaw poses a significant risk to environments utilizing Windows Services for NFS, particularly those with sensitive data or critical operations. Organizations using this service should prioritize immediate patching and mitigation efforts to safeguard against potential exploitation.

CVE
CVE-2026-70585
Severity
HIGH
CVSS
7
EPSS
0.26%
Windows

Original NVD Description

Use after free in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to execute code locally.