Junglewise Threat Intelligence

CVE-2026-47648: Microsoft Windows Storage privilege escalation via untrusted search path

CVE-2026-47648 · Severity: high · CVSS 7 · Published 2026-06-09

Vendors: Microsoft.

Executive brief

A security vulnerability exists in the Windows Storage component, which manages how the operating system handles data storage and file systems. An attacker who already has basic access to a computer could exploit this flaw to gain higher-level administrative permissions. This could allow them to take full control of the system, access restricted files, or install malicious software.

Technical details

A local privilege escalation vulnerability exists in Windows Storage due to an untrusted search path (CWE-426). The vulnerability occurs when the component attempts to load a resource or library without using a fully qualified path, potentially allowing an attacker to place a malicious file in a location searched by the system. To exploit this, an attacker must first have local access to the system with low-level privileges. Successful exploitation allows the attacker to execute code with elevated system privileges, compromising the confidentiality, integrity, and availability of the host. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows Storage

Timeline

  • 2026-06-09: disclosed
  • 2026-06-09: advisory: Microsoft published the security update guide.

References

Related threats