Aug 2026: .NET Framework Elevation of Privilege Vulnerability
CVE-2026-65810 Published on August 11, 2026
.NET Framework Elevation of Privilege Vulnerability
Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.
Weakness Type
Relative Path Traversal
The software uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize sequences such as ".." that can resolve to a location that is outside of that directory. This allows attackers to traverse the file system to access files or directories that are outside of the restricted directory.
Products Associated with CVE-2026-65810
stack.watch emails you whenever new vulnerabilities are published in Microsoft .NET Framework or Microsoft Net. Just hit a watch button to start following.
Affected Versions
Microsoft .NET Framework 3.5:- Version 3.5.0 and below 2.0.50727.9183 & 3.0.30729.9169 is affected.
- Version 3.0.0.0 and below 2.0.50727.8984 & 3.0.30729.8980 & 4.7.4144.0 is affected.
- Version 4.7.0 and below 2.0.50727.9070 & 3.0.30729.9068 & 4.7.4144.0 is affected.
- Version 4.8.0 and below 2.0.50727.9070 & 3.0.30729.9068 & 4.8.4805.0 is affected.
- Version 4.8.1 and below 2.0.50727.9183 & 3.0.30729.9169 & 4.8.9343.0 is affected.
- Version 4.7.0 and below 4.7.4144.0 is affected.
- Version 4.8.0 and below 4.8.4805.0 is affected.
- Version 4.8.0.0 and below 4.8.9344.0 is affected.