CyberICT

CVE-2026-20832

Microsoft · Published January 13, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability. What privileges could be gained by an attacker who successfully exploited the vulnerability? An attacker who successfully exploited this vulnerability could create, modify, or delete files in the security context of the "NT AUTHORITY\SYSTEM" account.

Affected Products

  • Windows 10 Version 1809 for 32-bit Systems
  • Windows 10 Version 1809 for x64-based Systems
  • Windows Server 2019
  • Windows Server 2019 (Server Core installation)

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C