Skip to main content
Back to Security Briefs

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerabilities

2 published alerts for Microsoft Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege.

Microsoft MSRC

CVE-2026-58547

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability (CVE-2026-58547) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.

Microsoft MSRC

CVE-2026-58547

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability

Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege vulnerability (CVE-2026-58547) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Universal Plug and Play (upnp.dll) allows an authorized attacker to elevate privileges locally. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.