CVE-2026-44810

HIGH WAF: Low
CVSS 7.8 Published: 2026-06-09
CWE-287

Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.

WAF Coverage Analysis

Improper Authentication Low WAF Coverage

OWASP: A07:2021 Identification and Authentication Failures

Affected Software

VendorProductVersion
microsoftwindows_11_23h2up to 10.0.22631.7219
microsoftwindows_11_23h2up to 10.0.22631.7219
microsoftwindows_11_24h2up to 10.0.26100.8655
microsoftwindows_11_24h2up to 10.0.26100.8655
microsoftwindows_11_25h2up to 10.0.26200.8655
microsoftwindows_11_25h2up to 10.0.26200.8655
microsoftwindows_11_26h1up to 10.0.28000.2269
microsoftwindows_11_26h1up to 10.0.28000.2269
microsoftwindows_server_2022up to 10.0.20348.5256
microsoftwindows_server_2025up to 10.0.26100.32995

References

Back to CVE Database