PT-2026-20332 · Microsoft · Windows Admin Center

Andrea Pierini

+1

·

Published

2026-02-17

·

Updated

2026-02-20

·

CVE-2026-26119

CVSS v3.1
8.8
VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Admin Center versions prior to 2511 Windows Admin Center version 1809.0
Description An improper authentication issue exists in Windows Admin Center, potentially allowing an authorized attacker to elevate privileges on a network. This flaw could grant an attacker the rights of the user running the application, and in certain scenarios, could lead to full domain compromise. The vulnerability is rated as high severity with a CVSS score of 8.8. No information is available regarding the number of potentially affected devices worldwide or any real-world incidents where this issue was exploited.
Recommendations Update Windows Admin Center to version 2511 or later. Update Windows Admin Center to a version later than 1809.0.

Fix

LPE

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2026-26119

Affected Products

Windows Admin Center