CVEs (16)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally. |
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally. |
Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network. |
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network. |
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network. |
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network. |
Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network. |
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network. |
Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to elevate privileges locally. |
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network. |
Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally. |
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally. |
External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally. |
Windows Admin Center Spoofing Vulnerability |
1Microsoft 1Windows Admin Center Jun 17, 2026 Mar 11, 2021 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 Windows Admin Center Security Feature Bypass Vulnerability |
1Microsoft 1Windows Admin Center Jun 17, 2026 Apr 9, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege Vulnerability'. |