Mar 2026: Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
CVE-2026-24291 Published on March 10, 2026
Windows Accessibility Infrastructure (ATBroker.exe) Elevation of Privilege Vulnerability
Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally.
Weakness Type
Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors. When a resource is given a permissions setting that provides access to a wider range of actors than required, it could lead to the exposure of sensitive information, or the modification of that resource by unintended parties. This is especially dangerous when the resource is related to program configuration, execution or sensitive user data.
Products Associated with CVE-2026-24291
Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.
Affected Versions
Microsoft Windows 10 Version 1607:- Version 10.0.14393.0 and below 10.0.14393.8957 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8511 is affected.
- Version 10.0.19044.0 and below 10.0.19044.7058 is affected.
- Version 10.0.19045.0 and below 10.0.19045.7058 is affected.
- Version 10.0.22631.0 and below 10.0.22631.6783 is affected.
- Version 10.0.22631.0 and below 10.0.22631.6783 is affected.
- Version 10.0.26100.0 and below 10.0.26100.8037 is affected.
- Version 10.0.26200.0 and below 10.0.26200.8037 is affected.
- Version 10.0.28000.0 and below 10.0.28000.1719 is affected.
- Version 10.0.28000.0 and below 10.0.28000.1719 is affected.
- Version 6.2.9200.0 and below 6.2.9200.25973 is affected.
- Version 6.2.9200.0 and below 6.2.9200.25973 is affected.
- Version 6.3.9600.0 and below 6.3.9600.23074 is affected.
- Version 6.3.9600.0 and below 6.3.9600.23074 is affected.
- Version 10.0.14393.0 and below 10.0.14393.8957 is affected.
- Version 10.0.14393.0 and below 10.0.14393.8957 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8511 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8511 is affected.
- Version 10.0.20348.0 and below 10.0.20348.4893 is affected.
- Version 10.0.25398.0 and below 10.0.25398.2207 is affected.
- Version 10.0.26100.0 and below 10.0.26100.32522 is affected.
- Version 10.0.26100.0 and below 10.0.26100.32522 is affected.