A elevation of privilege vulnerability affecting Microsoft Windows 10 Version 1607 versions The flaw affects a wide range of supported Windows client and server builds (CVE-2026-49176) exists in the Windows WalletService, allowing a standard user to gain SYSTEM rights on a Windows machine. This flaw can be exploited via the Extensible Storage Engine in the wallet database, which supports persisted callbacks. When the service opens the file as SYSTEM, a callback loads the attacker’s DLL, giving them full control. The vulnerability affects a wide range of supported Windows client and server builds, including versions 10.0.14393.0, 10.0.17763.0, 10.0.19044.0, and others. Microsoft rates this issue Important rather than Critical due to the local requirement for exploitation. However, elevation of privilege bugs remain a favorite for post-access attackers, making quick action necessary now that details are public. The CVSS score is 7.8 (High · CVSSv3), indicating a high severity vulnerability with significant business impact. Affected users should update their systems to the latest cumulative update and monitor for odd DLL loads by the WalletService svchost process.
We recommend you to update Microsoft Windows 10 Version 1607 to version 10.0.14393.9339.[/subscribe_to_unlock_form]
A elevation of privilege vulnerability affecting Microsoft Windows 10 Version 1607 versions The flaw affects a wide range of supported Windows client and server builds (CVE-2026-49176) exists in the Windows WalletService, allowing a standard user to gain SYSTEM rights on a Windows machine. This flaw can be exploited via the Extensible Storage Engine in the wallet database, which supports persisted callbacks. When the service opens the file as SYSTEM, a callback loads the attacker’s DLL, giving them full control. The vulnerability affects a wide range of supported Windows client and server builds, including versions 10.0.14393.0, 10.0.17763.0, 10.0.19044.0, and others. Microsoft rates this issue Important rather than Critical due to the local requirement for exploitation. However, elevation of privilege bugs remain a favorite for post-access attackers, making quick action necessary now that details are public. The CVSS score is 7.8 (High · CVSSv3), indicating a high severity vulnerability with significant business impact. Affected users should update their systems to the latest cumulative update and monitor for odd DLL loads by the WalletService svchost process.
We recommend you to update Microsoft Windows 10 Version 1607 to version 10.0.14393.9339.[emaillocker id="1283"]
The following reports contain further technical details:
[/emaillocker]