Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to CCleaner 7.10.1464 or later on Windows. All builds at or above 7.10.1464 include the fix.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 05 Aug 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 05 Aug 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gen Digital
Gen Digital ccleaner |
|
| Vendors & Products |
Gen Digital
Gen Digital ccleaner |
Wed, 05 Aug 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Link following vulnerability in the Uninstaller component in CCleaner prior to 7.10.1464 on Windows allows a local, low-privileged attacker to escalate privileges to SYSTEM via a symlink/junction created during application uninstallation, which CCleaner follows when deleting the application's data folder with elevated integrity. | |
| Title | CCleaner local privilege escalation via link following on uninstall | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GEN
Published:
Updated: 2026-08-05T15:32:26.710Z
Reserved: 2026-06-16T15:03:55.873Z
Link: CVE-2026-12410
Updated: 2026-08-05T15:32:22.357Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-05T15:30:17Z