Elevation of Privilege in Azure Active Directory by Microsoft
CVE-2026-50481

9.9CRITICAL

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
6 August 2026

What is CVE-2026-50481?

A security vulnerability in Azure Active Directory enables an attacker with authorized access to modify data assumed to be immutable, potentially leading to unauthorized privilege escalation over a network. This weakness could allow an attacker to gain higher access levels and perform actions beyond their intended permissions, posing significant risks to network security and data integrity.

Affected Version(s)

Azure Active Directory -

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.