← back
CVE-2025-26633

Microsoft Management Console Security Feature Bypass Vulnerability

CVSS 7 HIGHEPSS 31.9%● KEVCWE-707
In short

Microsoft Management Console has a flaw that lets someone with local access bypass a security feature meant to protect your system. This could allow them to do unauthorized actions they shouldn't be able to do.

Technical detail

A improper neutralization vulnerability in Microsoft Management Console permits local attackers to circumvent security controls through exploitation of insufficient input validation or access control mechanisms. Requires local system access; successful exploitation results in bypass of intended security restrictions.

Summary generated and translated by AI from the official description.
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →