CVE-2026-41086
Microsoft · Published May 12, 2026
8.8
CVSS v3.1
HIGHPatch availableGet patch
Description
Windows Admin Center in Azure Portal Elevation of Privilege Vulnerability. Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
Affected Products
- Windows Admin Center in Azure Portal
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C