Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Windows Admin Center
Total 21 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-27066 1 Microsoft 1 Windows Admin Center 2026-08-19 4.0 MEDIUM 4.3 MEDIUM
Windows Admin Center Security Feature Bypass Vulnerability
CVE-2026-58643 1 Microsoft 1 Windows Admin Center 2026-08-14 N/A 6.1 MEDIUM
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-62873 1 Microsoft 1 Windows Admin Center 2026-08-07 N/A 9.8 CRITICAL
Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-56196 1 Microsoft 1 Windows Admin Center 2026-07-24 N/A 8.8 HIGH
Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.
CVE-2026-56197 1 Microsoft 1 Windows Admin Center 2026-07-24 N/A 8.8 HIGH
Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.
CVE-2026-42834 1 Microsoft 1 Windows Admin Center 2026-07-23 N/A 7.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-56171 1 Microsoft 2 Remote Desktop Web Client, Windows Admin Center 2026-07-22 N/A 7.1 HIGH
Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-57107 1 Microsoft 1 Windows Admin Center 2026-07-21 N/A 7.8 HIGH
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2026-56169 1 Microsoft 1 Windows Admin Center 2026-07-21 N/A 8.1 HIGH
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-56185 1 Microsoft 1 Windows Admin Center 2026-07-21 N/A 6.5 MEDIUM
Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.
CVE-2026-58631 1 Microsoft 1 Windows Admin Center 2026-07-17 N/A 7.8 HIGH
Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.
CVE-2026-41086 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-35438 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.3 HIGH
Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-32196 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 6.1 MEDIUM
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-26119 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.8 HIGH
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-23660 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.8 HIGH
Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2026-20965 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.5 HIGH
Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-64669 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 7.8 HIGH
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-29819 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 6.2 MEDIUM
External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.
CVE-2023-29347 1 Microsoft 1 Windows Admin Center 2026-06-17 N/A 8.7 HIGH
Windows Admin Center Spoofing Vulnerability