CVE-2026-7791
Improper privilege management in the log rotation mechanism of the Skylight Workspace Config Service in Amazon WorkSpaces for Windows before 2.6.2034.0 allows a local non-admin authenticated user to place arbitrary files into arbitrary locations bypassing file system permission protections, leading to local privilege escalation to SYSTEM.
- Affected products
- Amazon Workspaces
- CVSS 4.0
- 8.5 HIGH
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.1% (2th percentile)
- Weakness
- CWE-367
- NVD status
- Awaiting Analysis
- Published
- 2026-05-04
- Attack patterns
- CAPEC-29
CVE-2026-7791 at NVD
1 known exploit for CVE-2026-7791
Proof-of-concept code and exploit modules indexed by Sploitus