SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-71348

MEDIUM · CVSS 6.8 EPSS 0.41%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in Windows Spaceport.sys can be exploited by an unauthorized attacker to execute arbitrary code, requiring physical access to the affected system. This poses a medium severity risk, particularly for environments where physical security is lax or where devices are accessible to untrusted individuals. Organizations utilizing Windows systems should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-71348
Severity
MEDIUM
CVSS
6.8
EPSS
0.41%
Windows

Original NVD Description

Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)