Multiple Vulnerabilities in Windows RRAS: Remote Code Execution and Elevation of Privilege
First seen 13 Jan 2026, 20:07 UTC
•
•91% similarity
•58
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Two vulnerabilities have been identified in Windows Routing and Remote Access Service (RRAS). CVE-2026-20868 allows unauthorized remote code execution via a heap-based buffer overflow, while CVE-2026-20843 enables authorized users to elevate their privileges locally due to improper access control.
ThreatCluster AI