Skip to main content

Vendor/product archive

microsoft / windows_admin_center CVEs

Beta · best-effort

21 CVEs tagged to microsoft / windows_admin_center2 Critical, 14 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2026-62873

Published Aug 7, 2026

Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-58643

Published Jul 16, 2026

Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-56197

Published Jul 14, 2026

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.

CVSS 8.8 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-56196

Published Jul 14, 2026

Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.

CVSS 8.8 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-57107

Published Jul 14, 2026

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-56169

Published Jul 14, 2026

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

CVSS 8.1 · High
evidence mentions
4
Buzz score
29.1
Vendor/product tagsBeta · best-effort

CVE-2026-42834

Published May 20, 2026

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-41086

Published May 12, 2026

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-35438

Published May 12, 2026

Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

CVSS 8.3 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-32196

Published Apr 14, 2026

Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2026-23660

Published Mar 10, 2026

Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
3
Buzz score
28.9
Vendor/product tagsBeta · best-effort

CVE-2026-26119

Published Feb 17, 2026

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

CVSS 8.8 · High
evidence mentions
3
Buzz score
23.9
Vendor/product tagsBeta · best-effort

CVE-2026-20965

Published Jan 13, 2026

Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-64669

Published Dec 11, 2025

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally.

CVSS 7.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-29819

Published Apr 8, 2025

External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.

CVSS 6.2 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2019-0813

Published Apr 9, 2019

An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-21 of 21 CVEsPage 1 of 1