Junglewise Threat Intelligence

CVE-2026-69807: Microsoft Windows PowerShell path traversal privilege escalation

CVE-2026-69807 · Severity: high · CVSS 8 · Published 2026-09-08

Executive brief

Windows PowerShell is a command-line scripting engine used by IT administrators to manage Windows systems and networks. An authorized attacker can exploit a path traversal vulnerability to bypass directory restrictions and escalate privileges over a network, potentially gaining complete administrative control over affected systems.

Technical details

The vulnerability is a path traversal (CWE-22) flaw in Windows PowerShell that improperly limits pathname validation. An authorized network attacker can craft malicious path sequences to escape directory restrictions and execute arbitrary code with elevated privileges. The attack requires prior authentication and network access to the affected system. Successful exploitation leads to privilege escalation, potentially allowing the attacker to assume system-level control. Microsoft has addressed this issue with security updates.

Affected products

  • Microsoft Windows PowerShell

Timeline

  • 2026-09-08: disclosed

References

Related threats