CyberICT

CVE-2026-47301

Microsoft · Published July 14, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Configuration Manager Elevation of Privilege Vulnerability. Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.

Affected Products

  • Microsoft Configuration Manager 2509
  • Microsoft Configuration Manager 2603
  • Microsoft Configuration Manager 2503

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C