THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-33694 (HIGH 7.8) — This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code w

[NVD] CVE-2026-33694 (HIGH 7.8) — This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code w

lownvdPublished 2026-04-23

CVE-2026-33694 CVSS: 7.8 HIGH Published: 2026-04-23T19:17:28.073

This vulnerability allows an attacker to create a junction, enabling the deletion of arbitrary files with SYSTEM privileges. As a result, this condition potentially facilitates arbitrary code execution, whereby an attacker may exploit the vulnerability to execute malicious code with elevated SYSTEM privileges.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-33694