CVE-2026-48581 Surface Broker SDMA Elevation of Privilege Vulnerability Insufficient granularity of access control in Microsoft Surface allows an authorized attacker to elevate privileges locally. EPSS 0.00 CVE-2026-48581 Microsoft US Microsoft Security · 14. 7. 16:00