Description
Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.
Published: 2026-08-20
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises from an uncontrolled search path element in the Windows Remote Help Defense component. This flaw enables an attacker who already has authorized access on the host to manipulate the search path and inject a forged executable, effectively allowing the attacker to spoof local operations. The lack of validation of the path introduces a local privilege escalation vector that can be leveraged to present malicious content or commands to the user or system without overtly triggering standard security checks.

Affected Systems

Microsoft Windows Remote Help is the affected product. No specific version range is listed, indicating that the issue may exist across all supported releases of the feature until a patch is applied.

Risk and Exploitability

The CVSS score of 7.1 reflects a medium to high severity. Since the evidence suggests an authorized attacker is required, the attack vector is local and relies on existing privileges. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog, implying that there is no known widespread exploitation yet. However, the ability to spoof locally remains a concern for users and administrators who enable Remote Help, especially in environments where privilege ranges are broad.

Generated by OpenCVE AI on August 21, 2026 at 00:29 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Windows to install the latest Microsoft security patch for Windows Remote Help
  • Disable Windows Remote Help if it is not required as a precautionary measure
  • Apply the principle of least privilege to user accounts that have authorized Remote Help access

Generated by OpenCVE AI on August 21, 2026 at 00:29 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 26 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft remote Help
CPEs cpe:2.3:a:microsoft:remote_help:*:*:*:*:*:*:*:*
Vendors & Products Microsoft remote Help

Fri, 21 Aug 2026 12:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 20 Aug 2026 22:00:00 +0000

Type Values Removed Values Added
Description Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.
Title Windows Remote Help Defense Spoofing Vulnerability
First Time appeared Microsoft
Microsoft windows-remote-help
Weaknesses CWE-427
CPEs cpe:2.3:a:microsoft:windows-remote-help:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows-remote-help
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Remote Help Windows-remote-help
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-09T19:36:45.166Z

Reserved: 2026-06-16T14:12:44.284Z

Link: CVE-2026-55013

cve-icon Vulnrichment

Updated: 2026-08-21T11:18:31.701Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-20T22:17:21.933

Modified: 2026-08-26T15:00:51.770

Link: CVE-2026-55013

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-21T00:45:06Z

Weaknesses
  • CWE-427

    Uncontrolled Search Path Element