HIGH
CVE-2026-21510
CVSS
8.8
KEV
Description
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
Summary dbcve.org
A protection mechanism failure in Windows Shell enables an unauthenticated attacker to bypass a security feature via network attack vector. The vulnerability stems from improper validation or enforcement of security controls within the Windows Shell component, allowing circumvention of intended protections.
Mitigation
Apply Microsoft security updates for Windows Shell when released. Until then, implement network segmentation and restrict unauthorized users from accessing affected Windows systems remotely.
Weakness (CWE)
CWE-693
EPSS Score
26.24%
Probability of exploitation in next 30 days
97.9th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.