What is CVE-2026-18485?
This is a local privilege escalation vulnerability in the NI-PAL kernel driver, allowing an authenticated local user to execute arbitrary code by escalating privileges on Microsoft Windows systems. It affects NI-PAL version 26.3.1 and all prior versions. Applying the vendor-supplied patch is strongly recommended.
Azərbaycanca: NI-PAL kernel driver-da aşkarlanmış bu yerli imtiyaz yüksəltmə (local privilege escalation) zəifliyi, autentifikasiyadan keçmiş lokal istifadəçiyə Microsoft Windows sistemlərində imtiyazlarını yüksəldərək ixtiyari kod icra etməyə imkan verir. Bu zəiflik NI-PAL 26.3.1 və daha əvvəlki versiyalara təsir edir. Dərhal istehsalçı tərəfindən təqdim olunan patchi tətbiq etmək tövsiyə olunur.
FAQ2
Which product does CVE-2026-18485 affect and what is the vulnerability type?
This is a local privilege escalation vulnerability found in the NI-PAL kernel driver. It affects NI-PAL version 26.3.1 and all prior versions.
What is the primary recommendation for CVE-2026-18485?
It is strongly recommended to immediately apply the vendor-supplied patch.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.