CVE-2026-20931

CWE-736 documents6 sources
Severity
8.0HIGH
EPSS
0.8%
top 26.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 13

Description

External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.1 | Impact: 5.9

Affected Packages31 packages

CVEListV5microsoft/windows_server_2008_service_pack_26.0.6003.06.0.6003.23717
CVEListV5microsoft/windows_server_2008_r2_service_pack_16.1.7601.06.1.7601.28117
NVDmicrosoft/windows< 10.0.14393.8783+5

🔴Vulnerability Details

3
CVEList
Windows Telephony Service Elevation of Privilege Vulnerability2026-01-13
GHSA
GHSA-qvh8-5v9x-29hh: External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network2026-01-13
VulnCheck
Microsoft Windows External Control of File Name or Path2026

📋Vendor Advisories

1
Microsoft
Windows Telephony Service Elevation of Privilege Vulnerability2026-01-13

🕵️Threat Intelligence

1
Wiz
CVE-2026-20931 Impact, Exploitability, and Mitigation Steps | Wiz