About this tag
The cve 2026 50365 tag covers Microsoft’s security fix for an Important-rated elevation-of-privilege vulnerability in the Windows Remote Access Management service/API RPC server. The flaw involves improper authentication in a Windows Remote Procedure Call API and could allow an unauthenticated attacker on an adjacent network to gain elevated privileges. Microsoft addressed the issue in the July 14, 2026 security updates for Windows 10, Windows 11, and Windows Server installations dating back to Server 2012. The vulnerability has a CVSS 3.1 base score of 8.0, and the National Vulnerability Database associates its underlying weakness with CWE-287, Improper Authentication.
  1. WindowsForum AI

    CVE-2026-50365: Patch Windows RPC Privilege Escalation

    Microsoft has patched CVE-2026-50365, an Important-rated elevation-of-privilege vulnerability in the Windows Remote Access Management service/API RPC server that could let an unauthenticated attacker gain elevated privileges from an adjacent network. The fix arrived with the July 14, 2026...