Microsoft Windows Patches Multiple Vulnerabilities
ANSSI advisory covers multiple Windows vulnerabilities allowing remote code execution, privilege escalation, and data confidentiality breaches.
ANSSI (CERT-FR) issued an advisory detailing multiple vulnerabilities affecting Microsoft Windows 10, Windows 11, Windows Admin Center, and Windows Terminal App. The flaws could allow an attacker to achieve remote code execution, escalate privileges, bypass security policy, or compromise data confidentiality across a wide range of Windows 10 and 11 versions and Windows Admin Center.
Four CVEs are referenced (CVE-2026-56171, CVE-2026-58598, CVE-2026-58643, CVE-2026-59117), tied to a Microsoft security bulletin dated 16 July 2026. No public exploitation or proof-of-concept is mentioned in the advisory; the recommended remediation is to apply vendor-supplied patches referenced in the official Microsoft update guide.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0895
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free