Description
Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.
Published: 2026-07-14
Score: 8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An attacker that is not authenticated can exploit a flaw in the Windows Remote Procedure Call API, allowing the attacker to gain higher privilege levels on the affected system. The vulnerability is identified as a CWE‑287 authentication bypass, meaning the system incorrectly verifies caller identity. Because elevated privileges can be used to modify system settings, install software, or access sensitive data, the impact could expand to additional compromise or persistence if the attacker follows up with other exploits.

Affected Systems

Microsoft Windows 10 versions 1607 through 22H2, Windows 11 versions 24H2 through 26H1, and Windows Server editions 2012 through 2025, including both standard and core installations. All of these product releases expose the RPC endpoint to adjacent networks and therefore are susceptible to this authentication bypass.

Risk and Exploitability

The CVSS score of 8 reflects a high severity that the flaw could let an attacker gain privileged access. The EPSS score of less than 1% indicates that, at present, the likelihood of exploitation is low and the flaw is not listed in CISA’s KEV catalog. Exploitation requires the attacker to locate and communicate with the vulnerable RPC service over an adjacent network; once the connection is established, the improper authentication can be leveraged to elevate privileges, potentially enabling further actions by the attacker. Based on the description, it is inferred that the attack likely originates from an adjacent network host.

Generated by OpenCVE AI on August 3, 2026 at 03:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Microsoft security update that resolves CVE‑2026‑50365 via the Microsoft Security Update Guide.
  • If the Remote Access Management service/API (RPC) is not required on a host, consider disabling the service or removing the corresponding components.
  • Use network segmentation, firewall rules, or host‑based filtering to restrict adjacent network traffic to the RPC endpoint, ensuring only trusted hosts can reach it.
  • Maintain all Windows client and server installations with the latest cumulative and security updates to keep the vulnerability fixed.

Generated by OpenCVE AI on August 3, 2026 at 03:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 14 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 17:45:00 +0000

Type Values Removed Values Added
Description Improper authentication in Windows RPC API allows an unauthorized attacker to elevate privileges over an adjacent network.
Title Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 10 1607
Microsoft windows 10 1809
Microsoft windows 10 21h2
Microsoft windows 10 22h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2012
Microsoft windows Server 2012 R2
Microsoft windows Server 2016
Microsoft windows Server 2019
Microsoft windows Server 2022
Microsoft windows Server 2025
Weaknesses CWE-287
CPEs cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_21H2:*:*:*:*:*:*:x86:*
cpe:2.3:o:microsoft:windows_10_22H2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2012_R2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows 10 1607
Microsoft windows 10 1809
Microsoft windows 10 21h2
Microsoft windows 10 22h2
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2012
Microsoft windows Server 2012 R2
Microsoft windows Server 2016
Microsoft windows Server 2019
Microsoft windows Server 2022
Microsoft windows Server 2025
References
Metrics cvssV3_1

{'score': 8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 10 1607 Windows 10 1809 Windows 10 21h2 Windows 10 22h2 Windows 11 24h2 Windows 11 25h2 Windows 11 26h1 Windows Server 2012 Windows Server 2012 R2 Windows Server 2016 Windows Server 2019 Windows Server 2022 Windows Server 2025
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-08-03T22:55:33.853Z

Reserved: 2026-06-04T18:48:26.815Z

Link: CVE-2026-50365

cve-icon Vulnrichment

Updated: 2026-07-14T19:36:32.289Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T03:30:13Z

Weaknesses