CVE-2026-55014: Microsoft Remote Help

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper access control in Windows Remote Help Defense allows an authorized attacker to elevate privileges locally.

Affected products

  • Microsoft Remote Help: before 5.2.1037.0 (fixed in 5.2.1037.0)

Published 2026-07-14. Last modified 2026-07-24.