CVE-2026-18485
HIGHNI-PAL <= 26.3.1 Windows Kernel Driver - Local Privilege Escalation
Title source: manualDescription
There is a local privilege escalation vulnerability recently discovered in the NI-PAL kernel driver. This may allow a local, authenticated user to escalate privileges and execute arbitrary code. This vulnerability affects NI-PAL 26.3.1 and prior versions running on Microsoft Windows.
References (1)
Core 1
Scores
CVSS v3
7.8
EPSS
0.0011
EPSS Percentile
1.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-1285
Status
published
Products (1)
NI/NI-PAL
< 26.3.1
Published
Aug 05, 2026
Tracked Since
Aug 06, 2026