May 2026: Windows Event Logging Service Elevation of Privilege Vulnerability
CVE-2026-33834 Published on May 12, 2026
Windows Event Logging Service Elevation of Privilege Vulnerability
Improper access control in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.
Weakness Type
What is an Authorization Vulnerability?
The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
CVE-2026-33834 has been classified to as an Authorization vulnerability or weakness.
Products Associated with CVE-2026-33834
Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.
Affected Versions
Microsoft Windows 10 Version 1607:- Version 10.0.14393.0 and below 10.0.14393.9140 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8755 is affected.
- Version 10.0.19044.0 and below 10.0.19044.7291 is affected.
- Version 10.0.19045.0 and below 10.0.19045.7291 is affected.
- Version 10.0.22631.0 and below 10.0.22631.7079 is affected.
- Version 10.0.22631.0 and below 10.0.22631.7079 is affected.
- Version 10.0.26100.0 and below 10.0.26100.8457 is affected.
- Version 10.0.26200.0 and below 10.0.26200.8457 is affected.
- Version 10.0.28000.0 and below 10.0.28000.2113 is affected.
- Version 6.2.9200.0 and below 6.2.9200.26079 is affected.
- Version 6.2.9200.0 and below 6.2.9200.26079 is affected.
- Version 6.3.9600.0 and below 6.3.9600.23181 is affected.
- Version 6.3.9600.0 and below 6.3.9600.23181 is affected.
- Version 10.0.14393.0 and below 10.0.14393.9140 is affected.
- Version 10.0.14393.0 and below 10.0.14393.9140 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8755 is affected.
- Version 10.0.17763.0 and below 10.0.17763.8755 is affected.
- Version 10.0.20348.0 and below 10.0.20348.5139 is affected.
- Version 10.0.25398.0 and below 10.0.25398.2330 is affected.
- Version 10.0.26100.0 and below 10.0.26100.32860 is affected.
- Version 10.0.26100.0 and below 10.0.26100.32860 is affected.