Vulnerabilità · 151 giorni fa

Patched Windows Shell Systems May Still Be Vulnerable

A Microsoft patch can leave the underlying flaw alive. CVE-2026-32202 is a Windows Shell spoofing zero-day that emerged from an incomplete fix for a previously exploited issue, so systems that were marked patched may still be exposed.

FortiGuard says the new vulnerability affects Microsoft Windows Shell and ties back to earlier exploitation of the same weakness. The key point is not the disclosure itself. It is that remediation did not fully close the door, which makes patch status a weaker signal than usual.

That changes the threat model for any environment that treated the earlier update as the end of the problem. The risk persists until the remediation is actually complete, not just installed.

CVE-2026-32202

NVD KEV

Sfruttamento noto · CISA KEV

CVSS 4.3 MEDIUM: protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network. EPSS 5% (92º percentile). Patch Microsoft: 5082123.

Patch disponibile KB5082123 Scarica →

Data di correzione federale CISA 12 mag

Cronologia

Fonti

1 fonte che coprono questa storia

Entità

Riepilogo fornitore: Microsoft

Part of the PlainSec briefing for 2026-05-02

Editions

Storie correlate