SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-78451

MEDIUM · CVSS 6.8 EPSS 0.44%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in the Microsoft Windows SCSI Class System File allows an unauthorized attacker to exploit an untrusted pointer dereference, potentially leading to privilege escalation through physical access to the system. This issue poses a medium risk, particularly for environments where physical security cannot be guaranteed. Organizations using affected Windows products should prioritize patching to mitigate the risk of unauthorized access.

CVE
CVE-2026-78451
Severity
MEDIUM
CVSS
6.8
EPSS
0.44%
Microsoft Windows

Original NVD Description

Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.

Related CVEs

Other vulnerabilities affecting the same vendor(s)