Windows Kernel Elevation of Privilege Vulnerability
Plan PatchCVSS 7.8CVE-2026-50423Jul 14, 2026
Microsoft
IT in OT - Windows Server and Active Directory are widely deployed in OT environments
Attack path
Attack VectorLocal
Auth RequiredLow
ComplexityLow
User InteractionNone needed
Summary
A vulnerability in the Windows Kernel improper access control allows an authorized user to elevate their privileges to system level. The flaw affects Windows 10, Windows 11, Windows Server 2022, and Windows Server 2025 across all supported versions and architectures. Exploitation is assessed as more likely. Microsoft has released fixes in the July 2026 security update for all affected versions.
What this means
What could happen
A user with a valid account on a Windows Server or Windows machine could run code with system-level privileges, potentially allowing them to alter critical configurations, disable security controls, or take full control of the machine.
Who's at risk
Windows Server 2022, Windows Server 2025, Windows 10 (all current versions and architectures), and Windows 11 (all current versions and architectures) running on IT workstations, RDP servers, engineering workstations, and any Windows-based HMI or SCADA host.
How it could be exploited
An attacker with a local user account logs into the machine, then exploits the kernel access control flaw to escalate their privileges from standard user to system administrator. From there, they can execute arbitrary commands with full system rights.
Prerequisites
- Valid local user account on the affected Windows system
- Local or remote desktop access to the machine
Local exploitation onlyRequires valid user accountLow complexity attackAffects system availability and integrity
Exploitability
Unlikely to be exploited — EPSS score 0.3%
Affected products (15)
15 with fix
ProductAffected VersionsFix Status
Remediation & Mitigation
0/1
Schedule — requires maintenance window
0/1Patching may require device reboot — plan for process interruption
Windows Server 2022
HOTFIXApply the July 2026 security update for your Windows version (Windows 10 21H2, 22H2; Windows 11 24H2, 25H2, 26H1; or Windows Server 2022/2025). Refer to the fixed build numbers in the advisory for your specific version.
CVEs (1)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/14b54b76-004c-41af-976f-e6418a7f3a28Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.