Security Advisory

CVE-2026-49180

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-14 17:05:48
Last updated 2026-07-26 17:17:30
Assigner microsoft
CVSS score 5.5
State PUBLISHED

Description

Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.