HarborGuard / CVE
Back to search
HIGHCVE-2026-41091Published Modified CNA microsoft

CVE-2026-41091: Microsoft Defender Elevation of Privilege Vulnerability

Improper link resolution before file access ('link following') in Microsoft Defender allows an authorized attacker to elevate privileges locally.

Metrics

CVSS v3.1
7.8
Severity
HIGH
Fixed in
1.1.26040.8
Affected Products
1

Fix available

1.1.26040.8
Affected packages
  • Microsoft / Microsoft Malware Protection Engine
    < 1.1.26040.8 (from 1.1.0.0)
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
CVE-2026-41091: Microsoft Defender Elevation of Privilege Vulnerability | HarborGuard CVE