CVE-2026-47301
Microsoft · Published July 14, 2026
8.8
CVSS v3.1
HIGHPatch availableGet patch
Description
Configuration Manager Elevation of Privilege Vulnerability. Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.
Affected Products
- Microsoft Configuration Manager 2509
- Microsoft Configuration Manager 2603
- Microsoft Configuration Manager 2503
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C