Junglewise Threat Intelligence

CVE-2026-48565: Microsoft Windows Narrator Braille untrusted search path privilege escalation

CVE-2026-48565 · Severity: high · CVSS 7.8 · Published 2026-06-09

Vendors: Microsoft.

Executive brief

A security vulnerability exists in the Windows Narrator Braille feature, which provides accessibility support for blind or low-vision users. An attacker who already has basic access to a computer could exploit this flaw to gain full administrative control over the system. This could allow them to view sensitive data, install malicious software, or disrupt business operations.

Technical details

A local privilege escalation vulnerability exists in Microsoft Windows Narrator Braille due to an untrusted search path (CWE-426). The vulnerability occurs when the application attempts to load a resource or library without specifying a fully qualified path, allowing a local attacker with low privileges to place a malicious file in a location searched by the application. If successful, the attacker can execute arbitrary code with the elevated privileges of the Narrator service. This exploit requires local system access but no user interaction. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows Narrator Braille

Timeline

  • 2026-06-09: disclosed: Initial publication by Microsoft and NVD.
  • 2026-06-09: advisory: Microsoft MSRC advisory published.

References