Live

Privilege Escalation

The latest Privilege Escalation coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 1:06 AM
Latest Most Read Breaking
Sort
Cve-2026-42979 · Patch Tuesday

CVE-2026-42979: Exploit lets local attackers gain SYSTEM via Windows Push Notification race condition

Microsoft has disclosed a new elevation-of-privilege vulnerability in the Windows Push Notification service, tracked as CVE-2026-42979. Revealed on June 9, 2026, as part of this month's Patch Tuesday...

Advertisement
Afd.sys Vulnerability · Cve 2026 42911

CVE-2026-42911: Windows AFD.sys Privilege Escalation Flaw Patched in June 2026 Update

Microsoft released a patch on June 9, 2026, for CVE-2026-42911, an Important-rated elevation-of-privilege vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys). The flaw could...

SE Security Desk·6w ago
Patch Tuesday · Privilege Escalation

Windows TCP/IP Zero-Click Flaw Lets Attackers Gain SYSTEM Access

Microsoft’s June 2026 Patch Tuesday batch fixes a critical Windows networking flaw—CVE-2026-42904—that lets unauthenticated attackers escalate privileges to SYSTEM, the highest possible level...

SE Security Desk·6w ago
Cve Patching · Privilege Escalation

CVE-2026-42836: Windows Elevation of Privilege via Race Condition in Function Discovery Service

On June 9, 2026, Microsoft released its monthly Patch Tuesday updates, tackling CVE-2026-42836—an elevation-of-privilege vulnerability in the Windows Function Discovery Service. The flaw, rated...

SE Security Desk·6w ago
Cve 2026 42910 · Patch Tuesday

Microsoft Hotpatch Service Bug Lets Attackers Gain SYSTEM Privileges

June’s Patch Tuesday brought a new privilege escalation bug that server administrators need to prioritize: CVE-2026-42910, a hole in the Windows Hotpatch Monitoring Service. Microsoft disclosed the...

SE Security Desk·6w ago
Click To Run · Cve-2026-47293

Microsoft Patches High-Severity Office Click-to-Run EoP Vulnerability CVE-2026-47293

On June 9, 2026, as part of its monthly Patch Tuesday release, Microsoft tackled a high-severity elevation-of-privilege vulnerability in Microsoft Office. The flaw, cataloged as CVE-2026-47293,...

SE Security Desk·6w ago
Cve-2026-45653 · Patch Tuesday

CVE-2026-45653: Microsoft Patches Important Windows Kernel Elevation-of-Privilege Flaw in June 2026 Patch Tuesday

Microsoft’s June 9, 2026 security update addresses CVE-2026-45653, a Windows kernel elevation-of-privilege vulnerability that could allow an attacker to gain SYSTEM-level access on a compromised...

SE Security Desk·6w ago
Cve-2026-45601 · Privilege Escalation

Microsoft Urges Patching of CVE-2026-45601: WinSock AFD Driver Exploit Leads to SYSTEM Access

Microsoft’s June 2026 Patch Tuesday closed a dangerous elevation-of-privilege hole in the Windows Ancillary Function Driver for WinSock (AFD). Tracked as CVE-2026-45601, the flaw grants a locally...

SE Security Desk·6w ago
Enterprise Security · Patch Tuesday

CVE-2026-45593: Windows SDK Privilege Escalation Forces Urgent Patching for Developer Environments

On June 9, 2026, Microsoft’s monthly security release included an unusual entry: CVE-2026-45593, an elevation-of-privilege vulnerability in the Windows Software Development Kit (SDK). The fix...

SE Security Desk·6w ago