Elevation of Privilege Vulnerability in Windows Admin Center by Microsoft
CVE-2026-20965
7.5HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 13 January 2026
What is CVE-2026-20965?
The vulnerability in Windows Admin Center stems from improper verification of cryptographic signatures, enabling an authorized attacker to gain elevated privileges locally. This security flaw can lead to unauthorized actions within the system, thereby compromising the overall integrity and safety of the platform.
Affected Version(s)
Windows Admin Center in Azure Portal 1.0 < 0.70.0.0
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved