PT-2026-2689 · Microsoft · Windows Client-Side Caching (Csc) Service+1

Published

2026-01-13

·

Updated

2026-01-15

·

CVE-2026-20839

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Windows Client-Side Caching (CSC) Service (affected versions not specified)
Description An issue with access control in the Windows Client-Side Caching (CSC) Service can allow an attacker to disclose information locally. The vulnerability allows attackers to obtain sensitive information and affect the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2026-00425
CVE-2026-20839

Affected Products

Windows
Windows Client-Side Caching (Csc) Service