CVE-2026-62721(microsoft / windows_10_1607)

LOWCVSS 7.8 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Insufficient granularity of access control in User-Mode Power Service (UMPS) allows an authorized attacker to elevate privileges locally.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1220

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1607
  • windows_10_1809
  • windows_10_21h2
  • windows_10_22h2

Threat summary

  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked at 3 mentions on most recent observed day (2026-09-15)
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
windows_10_1607windows_10_1809windows_10_21h2windows_10_22h2windows_11_23h2windows_11_24h2windows_11_25h2windows_11_26h1windows_server_2012windows_server_2016

2 versions affected across 13 products

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-09-14: 1Mentions · 2026-09-15: 309-1409-15
Referenced assets2 URLs
Full discourse4 posts
  • Imran Awan@imran76awan

    ⚠️ If your RDS servers are hit: do NOT roll back the September CU. Apply KB5129195 on top instead. Rolling back reopens whatever CVE-2026-62721 and the rest of that CU were patching. #WindowsUpdate

    11020140
    683 followersView on X
  • Imran Awan@imran76awan

    Also bundled in: CVE-2026-62721, a local EoP in the Windows User-Mode Power Service. CVSS not yet published - but being the only CVE in an emergency OOB release is itself a signal to treat it as high priority. #CVE #Security

    1001065
    683 followersView on X
  • “Remodeling-Plarail”& スマホSite@jun1Naka_

    「なぜ、いきなり更新が始まったのか?」——KB5129195緊急パッチから読み解くWindows Updateの構造変化 https://xn--ecka7j.biz/toolboox/windows11/14639/ Windows Updateが突然始まった理由を徹底解説。KB5129195緊急パッチ(OOB)の背景にある、前回の更新による重大障害とセキュリティ脆弱性(CVE-2026-62721)の正体を解明。 https://t.co/9c4N1xEtZN

    00000152
    16 followersView on X
  • 太鼓屋P@taikoyaP

    Windows User-Mode Power Service (UMPS) の特権昇格の脆弱性 CVE-2026-62721 https://msrc.microsoft.com/update-guide/advisory/CVE-2026-62721

    00000202
    2.3K followersView on X
CPE platform detail24 entries

24 of 24 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1607--x64
OSmicrosoftwindows_10_1607--x86
OSmicrosoftwindows_10_1809--x64
OSmicrosoftwindows_10_1809--x86
OSmicrosoftwindows_10_21h2--arm64
OSmicrosoftwindows_10_21h2--x64
OSmicrosoftwindows_10_21h2--x86
OSmicrosoftwindows_10_22h2--arm64
OSmicrosoftwindows_10_22h2--x64
OSmicrosoftwindows_10_22h2--x86
OSmicrosoftwindows_11_23h2--arm64
OSmicrosoftwindows_11_23h2--x64
OSmicrosoftwindows_11_24h2--arm64
OSmicrosoftwindows_11_24h2--x64
OSmicrosoftwindows_11_25h2--arm64
OSmicrosoftwindows_11_25h2--x64
OSmicrosoftwindows_11_26h1--arm64
OSmicrosoftwindows_11_26h1--x64
OSmicrosoftwindows_server_2012---
OSmicrosoftwindows_server_2012r2--
OSmicrosoftwindows_server_2016---
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2025---

Explore more