PT-2026-2684 · Microsoft · Windows Shell+1

Nacl

·

Published

2026-01-13

·

Updated

2026-01-15

·

CVE-2026-20834

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Windows Shell (affected versions not specified)
Description A security issue exists in Windows Shell that allows an unauthorized attacker to perform spoofing. This requires physical access to the system. The issue involves an absolute path traversal, enabling attackers to affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2026-00534
CVE-2026-20834

Affected Products

Windows
Windows Shell