VYPR

Winlogon

by Microsoft

CVEs (2)

  • CVE-2026-42989HigJun 9, 2026
    risk 0.51cvss 7.8epss

    Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.

  • CVE-2019-1268Sep 11, 2019
    risk 0.00cvss epss 0.00

    An elevation of privilege exists when Winlogon does not properly handle file path information, aka 'Winlogon Elevation of Privilege Vulnerability'.