Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Windows Admin Center
Total 13 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-58631 1 Microsoft 1 Windows Admin Center 2026-07-17 N/A 7.8 HIGH
Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.
CVE-2026-42834 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-41086 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-35438 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.3 HIGH
Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-32196 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 6.1 MEDIUM
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-26119 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.8 HIGH
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-23660 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.8 HIGH
Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2026-20965 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.5 HIGH
Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-64669 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-29819 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 6.2 MEDIUM
External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.
CVE-2023-29347 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.7 HIGH
Windows Admin Center Spoofing Vulnerability
CVE-2021-27066 1 Microsoft 1 Windows Admin Center 2026-06-17 4.0 MEDIUM 4.3 MEDIUM
Windows Admin Center Security Feature Bypass Vulnerability
CVE-2019-0813 1 Microsoft 1 Windows Admin Center 2026-06-17 7.5 HIGH 9.8 CRITICAL
An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege Vulnerability'.