PT-2026-48039 · Microsoft · Windows Storage+1

CVE-2026-47648

·

Published

2026-06-09

·

Updated

2026-06-10

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Storage (affected versions not specified)
Description An untrusted search path in Windows Storage allows an authorized attacker to elevate privileges locally. Privilege escalation occurs when an application searches for a required file in an insecure order, allowing an attacker to place a malicious file in a directory that is searched before the legitimate one.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-08355
CVE-2026-47648

Affected Products

Windows
Windows Storage