CVE-2026-50342

Summary

Improper access control in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

Affected Software

VendorProductVersion RangeStatus
MicrosoftWindows 11 Version 24H210.0.26100.0 < 10.0.26100.8875affected
MicrosoftWindows 11 Version 25H210.0.26200.0 < 10.0.26200.8875affected
MicrosoftWindows 11 version 26H110.0.28000.0 < 10.0.28000.2525affected

Weaknesses

  • CWE-284: CWE-284: Improper Access Control

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References