Skip to content
Researchers Disclose ‘RegPwn,’ a Windows Registry Weakness Allowing SYSTEM Access

Researchers Disclose ‘RegPwn,’ a Windows Registry Weakness Allowing SYSTEM Access

Gbhackers Divya March 18, 2026

Researchers at MDSec have disclosed a newly patched Elevation of Privilege vulnerability in Microsoft Windows, known as “RegPwn”. Tracked as CVE-2026-24291, this flaw allows a low-privileged user to gain full SYSTEM access by exploiting how Windows handles registry configurations for its built-in Accessibility features.​ Windows Accessibility features, such as the On-Screen Keyboard and Narrator, run […]

Extracted Entities

Attack Types (1)

Companies (1)

Platforms (1)

Vulnerabilities (1)