SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-72957

HIGH · CVSS 7.8 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in Windows Deployment Services allows authorized attackers to execute arbitrary code locally on affected Windows systems. This high-severity flaw poses a significant risk to organizations utilizing Windows Deployment Services, as it could lead to unauthorized access and control over critical systems. Organizations should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-72957
Severity
HIGH
CVSS
7.8
EPSS
0.31%
Windows

Original NVD Description

Heap-based buffer overflow in Windows Deployment Services allows an authorized attacker to execute code locally.