Junglewise Threat Intelligence

CVE-2026-55015: Microsoft Windows Remote Help denial of service via search path element

CVE-2026-55015 · Severity: medium · CVSS 5.5 · Published 2026-08-20

Vendors: Microsoft.

Executive brief

Windows Remote Help is a Microsoft tool that allows IT support staff to connect to and assist end users remotely. An authenticated attacker with local access can exploit an uncontrolled search path vulnerability to crash the Remote Help service, disrupting support operations and preventing legitimate users from receiving assistance.

Technical details

This vulnerability exists in Windows Remote Help due to an uncontrolled search path element, classified as a directory traversal or DLL preloading weakness. An authorized attacker with local system access can manipulate the search path to cause the application to load a malicious library or fail to load required dependencies, resulting in a denial of service condition. The attack requires local access and prior authentication, limiting the attack surface. The service can be restarted to restore functionality, but availability is temporarily impacted during the attack window. Patches are available from Microsoft Security Updates.

Affected products

  • Microsoft Windows Remote Help

Timeline

  • 2026-08-20: disclosed

References

Related threats