« Volver al listado

Microsoft

Microsoft Windows Admin Center: vulnerabilidades y CVE

Microsoft Windows Admin Center tiene 22 vulnerabilidades publicadas, 18 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE22
Últimos 12 meses18
Críticas2
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-62873Crítica (9.8)0.61%—7 ago 2026
Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-56171Alta (7.5)0.66%—17 jul 2026
Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.
CVE-2026-58643Media (6.1)0.41%—16 jul 2026
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-56197Alta (8.8)0.99%—14 jul 2026
Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.
CVE-2026-56196Alta (8.8)1.0%—14 jul 2026
Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.
CVE-2026-58631Alta (7.8)0.30%—14 jul 2026
Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.
CVE-2026-57107Alta (7.8)0.30%—14 jul 2026
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2026-56185Media (6.5)0.84%—14 jul 2026
Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.
CVE-2026-56169Alta (8.8)0.75%—14 jul 2026
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2024-24909Alta (8.8)0.45%—16 jun 2026
Dell OpenManage Integration with Microsoft Windows Admin Center contains a Remote Code Execution vulnerability in the gateway plugin. A remote authenticated user could potentially exploit this vulnerability to escalate…
CVE-2026-42834Alta (7.8)0.37%—20 may 2026
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-41086Alta (8.8)0.78%—12 may 2026
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-35438Alta (8.3)0.63%—12 may 2026
Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-32196Media (6.1)0.41%—14 abr 2026
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-23660Alta (7.8)0.31%—10 mar 2026
Improper access control in Azure Portal Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2026-26119Alta (8.8)0.81%—17 feb 2026
Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.
CVE-2026-20965Alta (7.5)0.23%—13 ene 2026
Improper verification of cryptographic signature in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-64669Alta (7.8)0.47%—11 dic 2025
Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges locally.
CVE-2025-29819Media (6.2)1.1%—8 abr 2025
External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.
CVE-2023-29347Media (6.8)1.9%—11 jul 2023
Windows Admin Center Spoofing Vulnerability
CVE-2021-27066Media (4.3)3.0%—11 mar 2021
Windows Admin Center Security Feature Bypass Vulnerability
CVE-2019-0813Crítica (9.8)3.5%—9 abr 2019
An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege Vulnerability'.

Otros productos de Microsoft