PT-2026-58137 · Microsoft · Surface

CVE-2026-48581

·

Published

2026-07-14

·

Updated

2026-07-23

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Surface (affected versions not specified)
Description Insufficient granularity of access control in the touch screen firmware allows an authorized attacker to elevate privileges locally. Access control granularity refers to the level of detail with which permissions are assigned to users or processes.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09818
CVE-2026-48581

Affected Products

Surface