VulnSea

windows_admin_center vulnerabilities

CVEs whose affected-version data names the windows_admin_center package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

9 CVEsRSS

CVE-2026-56171High· 7.1
2mo ago

Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability

Exposure of private personal information to an unauthorized actor in Windows RDP allows an unauthorized attacker to disclose information over a network.

TwilightMicrosoft · Remote Desktop Web ClientEPSS 0.66%via CVEORG
CVE-2026-58643Medium· 6.1
2mo ago

Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.

Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.

SunlitMicrosoft · Windows Admin CenterEPSS 0.41%via NVD
CVE-2026-57107High· 7.8
2mo ago

Windows Admin Center Elevation of Privilege Vulnerability

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges locally.

TwilightMicrosoft · Windows Admin CenterEPSS 0.30%via CVEORG
CVE-2026-56185Medium· 6.5
2mo ago

Windows Admin Center Information Disclosure Vulnerability

Improper authentication in Windows Admin Center allows an authorized attacker to disclose information over a network.

SunlitMicrosoft · Windows Admin CenterEPSS 0.84%via CVEORG
CVE-2026-56169High· 8.1
2mo ago

Windows Admin Center Elevation of Privilege Vulnerability

Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

TwilightMicrosoft · Windows Admin CenterEPSS 0.51%via CVEORG
CVE-2026-56197High· 8.8
2mo ago

Windows Admin Center (WAC) Remote Code Execution Vulnerability

Improper neutralization of special elements used in a command ('command injection') in Windows Admin Center allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Windows Admin CenterEPSS 0.92%via CVEORG
CVE-2026-56196High· 8.8
2mo ago

Windows Admin Center (WAC) Remote Code Execution Vulnerability

Relative path traversal in Windows Admin Center allows an authorized attacker to execute code over a network.

TwilightMicrosoft · Windows Admin CenterEPSS 0.95%via CVEORG
CVE-2026-58631High· 7.8
2mo ago

Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.

Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.

Twilightmicrosoft · windows_admin_centerEPSS 0.30%via NVD
CVE-2026-42834High· 7.8
4mo ago

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

Improper access control in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

Twilightmicrosoft · windows_admin_centerEPSS 0.41%via NVD
windows_admin_center vulnerabilities (CVEs) · VulnSea