Junglewise Threat Intelligence

CVE-2026-73003: Windows Modern Device Management use-after-free privilege escalation

CVE-2026-73003 · Severity: high · CVSS 7 · Published 2026-09-08

Executive brief

Windows Modern Device Management (MDM) is a system component that manages device policies and compliance for enterprises. A use-after-free vulnerability allows an authorized local user to elevate their privileges and gain administrative control of the system, potentially compromising sensitive corporate data and system integrity.

Technical details

A use-after-free vulnerability exists in Windows Modern Device Management (MDM) that can be exploited by an authorized local attacker to escalate privileges. The vulnerability likely results from improper memory management in the MDM service, where memory is freed prematurely but later accessed by the application. An attacker with local access to the system can exploit this flaw to elevate privileges from a standard user account to administrator level. Patches have been made available by Microsoft to address this issue.

Affected products

  • Microsoft Windows Modern Device Management

Timeline

  • 2026-09-08: disclosed

References

Related threats