CVE-2026-70348
Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service
CVSS
5.5
Medium
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 11, 2026 · Last modified: Aug 11, 2026 · CWE-59
Not enough EPSS history yet.
Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service locally.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-729715.5 MED—
———Improper link resolution before file access ('link following') in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to perform tampering locally.5hCVE-2026-628327.8 HIG—
———Improper link resolution before file access ('link following') in Windows User Profile Service allows an authorized attacker to elevate privileges locally.5hCVE-2026-628127.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.5hCVE-2026-628077.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.5hCVE-2026-628037.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.5hCVE-2026-627767.8 HIG—
———Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally.5h