CVE-2026-21098: Link to Windows vulnerability
Published Sep 9, 2026
·Updated
Improper access control in Link to Windows prior to SMR Sep-2026 Release 1 allows local attackers to establish a connection with the PC without proper user interaction.
Affected Software
1 affected component
Link to Windows<SMR Sep-2026 Release 1
Event History
Sep 9, 2026
CVE Published
via MITRE·04:47 AM
Data Sourced
via MITRE·04:47 AM
DescriptionWeakness
Frequently Asked Questions
1
Which releases are affected?
Link to Windows releases prior to SMR Sep-2026 Release 1 are affected.
2
What level of access does an attacker need?
Exploitation requires an attacker to have local access.
3
What could successful exploitation allow?
A local attacker could establish a connection with the PC without proper user interaction.