CVE-2026-35438
Microsoft · Published May 12, 2026
8.3
CVSS v3.1
HIGHPatch availableGet patch
Description
Windows Admin Center Elevation of Privilege Vulnerability. Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
Affected Products
- Windows Admin Center
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H/E:U/RL:O/RC:C