Vulnerability Description
A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task scheduler logic chain — no network access, no memory corruption required (ITMS 8.7.3)
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-15380?
CVE-2026-15380 is a documented vulnerability. A non-administrator interactive user can obtain full SYSTEM code execution through a DCOM/task scheduler logic chain — no network access, no memory corruption required (ITMS 8.7.3)
How severe is CVE-2026-15380?
CVSS scoring is not yet available for CVE-2026-15380. Check NVD for updates.
Is there a patch for CVE-2026-15380?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.