← back
CVE-2026-33451highCWE-125

Arbitrary read/write vulnerability in Windows clients prior to 14.50

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.5epss 0.1%
exploitation probability
0.1%top 99% of all CVEs
observed exploitation
nono source reports it
CVE-2026-33451 is an arbitrary read/write vulnerability in the Secure Access Windows client prior to 14.50. Attackers with local control of the Windows client can send malformed data to an API and elevate their level of privilege to system.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N