Junglewise Threat Intelligence

CVE-2026-65672: Windows Remote Access API heap buffer overflow privilege escalation

CVE-2026-65672 · Severity: high · CVSS 7.8 · Published 2026-08-11

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

Windows Remote Access API contains a heap buffer overflow vulnerability that allows an authorized local user to elevate their privileges on an affected system. This could enable an attacker with legitimate access to gain administrative control, potentially compromising the entire system and any data it contains.

Technical details

A heap-based buffer overflow exists in the Windows Remote Access API component. The vulnerability allows an authorized local attacker to trigger a memory corruption condition by providing malformed input to the API. Exploitation requires the attacker to already have user-level access to the target system. Successful exploitation results in privilege escalation from user to SYSTEM or administrator context. A patch has been released by Microsoft as indicated by the security update guide reference.

Affected products

  • Microsoft Windows <UNKNOWN>

Timeline

  • 2026-08-11: disclosed

References

Related threats