Privilege Escalation Flaw in Windows Admin Center Patched
Summary
Hide ▲
Show ▼
Microsoft has patched a high-severity privilege escalation vulnerability (CVE-2026-26119) in Windows Admin Center, a browser-based management tool. The flaw, with a CVSS score of 8.8, could allow authenticated attackers to escalate privileges over a network. The vulnerability was discovered by Semperis researcher Andrea Pierini and was addressed in version 2511 released in December 2025. While not confirmed to be exploited in the wild, it has been assessed as 'Exploitation More Likely'.
Timeline
-
19.02.2026 19:40 1 articles · 5h ago
CVE-2026-26119 Privilege Escalation Flaw in Windows Admin Center Patched
Microsoft has patched a high-severity privilege escalation vulnerability (CVE-2026-26119) in Windows Admin Center, a browser-based management tool. The flaw, with a CVSS score of 8.8, could allow authenticated attackers to escalate privileges over a network. The vulnerability was discovered by Semperis researcher Andrea Pierini and was addressed in version 2511 released in December 2025. While not confirmed to be exploited in the wild, it has been assessed as 'Exploitation More Likely'.
Show sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
Information Snippets
-
CVE-2026-26119 is a high-severity privilege escalation vulnerability in Windows Admin Center.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
The flaw has a CVSS score of 8.8 out of 10.0.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
The vulnerability was discovered by Semperis researcher Andrea Pierini.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
The patch was released in Windows Admin Center version 2511 in December 2025.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
Microsoft has not confirmed exploitation in the wild but assesses it as 'Exploitation More Likely'.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
Technical details of the vulnerability are currently under wraps.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40
-
The vulnerability could potentially lead to a full domain compromise under certain conditions.
First reported: 19.02.2026 19:401 source, 1 articleShow sources
- Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center — thehackernews.com — 19.02.2026 19:40