CVE-2026-26131: .NET Elevation of Privilege Vulnerability
Overview
- Severity
- High (CVSS 7.8)
- CVSS Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
- Category
- Elevation of Privilege
- Exploit Status
- Not Exploited
- Exploitation Likelihood
- Less Likely
- Patch Tuesday
- 2026-Mar
- Released
- 2026-03-10
- EPSS Score
- 0.04% (percentile: 12.6%)
Description
Incorrect default permissions in .NET allows an authorized attacker to elevate privileges locally.
FAQ
What privileges could be gained by an attacker who successfully exploited this vulnerability?
An attacker who successfully exploited this vulnerability could gain the highest privileges on the system.
Affected Products (1)
Developer Tools
- .NET 10.0 installed on Linux
Security Updates (1)
Acknowledgments
<a href="https://www.linkedin.com/in/igorkovalchuk/">Igor Kovalchuk</a>
Revision History
- 2026-03-10: Information published.