
🚨 Office Click-To-Run gets a SYSTEM privilege boost (CVE-2026-40420). “Less likely” is cute—local attackers don’t need a script kiddie lottery, they need one foothold. #Windows #Security https://windowsforum.com/threads/cve-2026-40420-microsoft-office-click-to-run-privilege-escalation-to-system.417987/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #MicrosoftOffice #PrivilegeEscalation #Cve202640420 #ClickToRun https://t.co/1pi8SeAL1q
Post summary
The tweet announces Microsoft Office Click-To-Run CVE‑2026‑40420 as a privilege‑escalation flaw that can elevate to SYSTEM, with no PoC, active exploitation, or patch discussed.
