As cited
Copy frozen at (site build).
vulnerabilities
CVE-2026-47291: Remote Code Execution in the Windows HTTP.sys
A remote code execution vulnerability exists in Windows HTTP.sys, the kernel-mode HTTP protocol driver used by Internet Information Services (IIS). The flaw stems from an integer overflow in buffer reference array handling during HTTP/1.x header parsing, allowing unauthenticated attackers to send crafted HTTP packets to achieve denial-of-service or kernel-level code execution.
Why it matters: Organizations running IIS or applications using HTTP.sys must verify that systems are patched; this vulnerability allows remote code execution with kernel privileges without authentication, making it critical for any exposed HTTP/HTTPS services.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
CVE-2026-47291: Remote Code Execution in the Windows HTTP.sys
A remote code execution vulnerability exists in Windows HTTP.sys, the kernel-mode HTTP protocol driver used by Internet Information Services (IIS). The flaw stems from an integer overflow in buffer reference array handling during HTTP/1.x header parsing, allowing unauthenticated attackers to send crafted HTTP packets to achieve denial-of-service or kernel-level code execution.
Why it matters: Organizations running IIS or applications using HTTP.sys must verify that systems are patched; this vulnerability allows remote code execution with kernel privileges without authentication, making it critical for any exposed HTTP/HTTPS services.
- Source published
- First seen by Cybersecurity Tracker