CyberICT

CVE-2026-55011

Microsoft · Published July 14, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Microsoft Defender Remote Code Execution Vulnerability. Integer underflow (wrap or wraparound) in Microsoft Defender allows an unauthorized attacker to execute code locally.

Affected Products

  • Microsoft Malware Protection Engine

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C