PatchSiren

ANSSI CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH ANSSI CVE published 2026-06-18

CVE-2026-11958

CVE-2026-11958 is a high-severity local privilege escalation vulnerability in ANSSI's DFIR-ORC, affecting versions 10.2.7 and prior. An attacker with prior access to the system can exploit this vulnerability by placing a malicious DLL in the C:WindowsTemp directory, which can be loaded automatically when the application is executed with administrative privileges, allowing the attacker to gain administrato [truncated]