Aller au contenu
CodeAuditAgent

CVE-2026-20928

Improper removal of sensitive information before storage or transfer in Windows Recovery Environment Agent allows an unauthorized attacker to bypass a security feature with a physical attack.

Faiblesse

Improper removal of sensitive information before storage or transfer in Windows Recovery Environment Agent allows an unauthorized attacker to bypass a security feature with a physical attack.

Produits concernés

  • microsoft windows_10_1607
  • microsoft windows_10_1809
  • microsoft windows_10_21h2
  • microsoft windows_10_22h2
  • microsoft windows_11_23h2
  • microsoft windows_11_24h2
  • microsoft windows_11_25h2
  • microsoft windows_11_26h1

Références

Trouvez la faille avant un attaquant.

Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.