EIP-2026-117574

PRE-CVE

Microsoft Windows NT 4.0/2000 - Spoofed LPC Request (MS00-003)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117574. PoCs published by BindView's Razor Team.

AI-analyzed exploit summary This is a technical writeup describing a new variation of the NT LPC Privilege Escalation Vulnerability (CVE-2026-117574), detailing restrictions and exploitation conditions. It references a previous vulnerability (BID 934) and explains that the Microsoft patch (MS00-003) does not address this new issue.

Description

Microsoft Windows NT 4.0/2000 - Spoofed LPC Request (MS00-003)

Exploits (1)

exploitdb WRITEUP VERIFIED
by BindView's Razor Team · textlocalwindows
https://www.exploit-db.com/exploits/20265

This is a technical writeup describing a new variation of the NT LPC Privilege Escalation Vulnerability (CVE-2026-117574), detailing restrictions and exploitation conditions. It references a previous vulnerability (BID 934) and explains that the Microsoft patch (MS00-003) does not address this new issue.

Classification
Writeup 90%
Attack Type
Lpe
Complexity
Complex
Reliability
Racy
Target: Microsoft Windows (specific version not specified)
Auth required
Prerequisites: Interactive logon access to the target machine · Knowledge of the target process's PID, TID, and MID · Timing synchronization with the LPC call
devstral-2 · analyzed Feb 19, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026