Microsoft Windows Admin Center
cpe:2.3:a:microsoft:windows_admin_center:*:*:*:*:*:*:*
A vulnerability in Windows Admin Center allows an authorized attacker to elevate privileges over a network. This issue arises from improper access control, enabling low-privileged users to send specially crafted requests to the Windows Admin Center update API and perform actions beyond their assigned permissions.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing attackers to gain elevated rights and access within the affected system or application.
Users are advised to download the security update for Windows Admin Center in Azure Portal. Instructions are available in the Windows Admin Center Release Notes.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.