SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-72926

HIGH · CVSS 7 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in Windows Internet Connection Sharing (ICS) enables an authorized attacker to elevate their privileges locally, potentially allowing them to execute arbitrary code with elevated permissions. Organizations utilizing Windows systems with ICS enabled should prioritize patching this vulnerability to mitigate the risk of local privilege escalation attacks.

CVE
CVE-2026-72926
Severity
HIGH
CVSS
7
EPSS
0.25%
Windows

Original NVD Description

Use after free in Windows Internet Connection Sharing (ICS) allows an authorized attacker to elevate privileges locally.