Description
There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver.  This may allow a local, authenticated user to escalate privileges and execute arbitrary code.  This vulnerability affects NI-PAL 26.3.1 and prior versions running on Microsoft Windows.
Published: 2026-08-05
Score: 8.5 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A local, authenticated user can exploit a vulnerability in the NI-PAL kernel driver to obtain elevated privileges and execute arbitrary code on Microsoft Windows. The flaw, classified under CWE-1285, permits escalation of local privileges, potentially allowing a low-privileged user to gain SYSTEM level access. Once elevated, an attacker could manipulate system state, exfiltrate sensitive data, or disrupt services.

Affected Systems

The vulnerability affects NI-PAL version 26.3.1 and earlier running on Windows platforms. All installations of these affected versions are susceptible until upgraded to a patched release.

Risk and Exploitability

The CVSS score of 8.5 indicates a high severity. Because the vulnerability is local and requires authentication, external exploitation is limited. EPSS information is unavailable, but the risk remains significant for environments where local privileged users exist. The issue is not currently listed in the CISA KEV catalog, suggesting no publicly known exploits yet, yet the potential impact justifies prompt remediation.

Generated by OpenCVE AI on August 5, 2026 at 20:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the official security update for NI-PAL that addresses the local privilege escalation in the kernel driver—upgrade to a version newer than 26.3.1 on Windows.
  • Remove or disable any local user accounts that have administrative privileges and are not required for business operations.
  • Implement least‑privilege controls on Windows machines, ensuring local users do not have rights that allow driver installation or modification.

Generated by OpenCVE AI on August 5, 2026 at 20:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 05 Aug 2026 19:15:00 +0000

Type Values Removed Values Added
Description There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver.  This may allow a local, authenticated user to escalate privileges and execute arbitrary code.  This vulnerability affects NI-PAL 26.3.1 and prior versions running on Microsoft Windows.
Title Local Privilege Escalation in NI-PAL
First Time appeared Ni
Ni ni-pal
Weaknesses CWE-1285
CPEs cpe:2.3:a:ni:ni-pal:*:*:windows:*:*:*:*:*
Vendors & Products Ni
Ni ni-pal
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.5, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NI

Published:

Updated: 2026-08-05T19:23:15.789Z

Reserved: 2026-07-31T13:23:54.979Z

Link: CVE-2026-18485

cve-icon Vulnrichment

Updated: 2026-08-05T19:23:02.389Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T20:30:06Z

Weaknesses
  • CWE-1285

    Improper Validation of Specified Index, Position, or Offset in Input