CVE-2026-62873Patch(microsoft / windows_admin_center)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft windows_admin_center systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-347

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_admin_center

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-08-06); latest day: 1
  • 4 total mentions across 4 days

Affected systems

Vendors
Products
windows_admin_center

1 version affected across 1 product

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-08-06: 1Mentions · 2026-08-07: 1Mentions · 2026-08-08: 1Mentions · 2026-08-23: 1Patch / Workaround · 2026-08-06: 1Patch / Workaround · 2026-08-08: 1Patch / Workaround · 2026-08-23: 1Technical Details · 2026-08-07: 1Technical Details · 2026-08-08: 1Technical Details · 2026-08-23: 108-0608-0708-0808-23
Signal classification2 categories
Patch
375.0%
Disclosure
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-08-061
Patch1
2026-08-071
Disclosure1
2026-08-081
Patch1
2026-08-231
Patch1
Full discourse4 posts
  • Sami Laiho@samilaiho
    Patch

    Microsoft 365 Admin Center Elevation of Privilege Vulnerability URL: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62873 Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8

    Post summary

    The post references an Office 365 admin center elevation of privilege vulnerability (CVE‑2026‑62873) classified as critical with a CVSS 9.8 score and notes that Microsoft has released an official fix, but no exploit or PoC details are provided.

    010211.1K
    30.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-62873 Improper verification of cryptographic signature in Microsoft 365 Admin Center allows an unauthorized attacker to elevate privileges over a network. https://www.cve.org/CVERecord?id=CVE-2026-62873

    Post summary

    CVE-2026-62873 is a vulnerability in Microsoft 365 Admin Center that incorrectly verifies cryptographic signatures, allowing an unauthorized attacker to elevate privileges over a network.

    00001746
    57.9K followersView on X
  • Anavem.com@Anavem_
    Patch

    CVE-2026-62873: Critical Microsoft 365 Admin Center EoP Flaw Patched https://anavem.com/news/cve-2026-62873-critical-microsoft-365-admin-center-eop-flaw-patched

    Post summary

    The article announces that CVE-2026-62873, a critical elevation-of-privilege flaw in Microsoft 365 Admin Center, has been patched.

    00000103
    162 followersView on X
  • Windows Forum@windowsforum
    Patch

    ⚠️ CVE-2026-62873 hits the Microsoft 365 Admin Center, but there’s no local patch to deploy—just tighter access controls and monitoring. Cloud security: where “update now” means “wait for Microsoft.” https://windowsforum.com/security-alerts.84/cve-2026-62873-microsoft-365-admin-center-has-no-local-patch.441884/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #ElevationOfPrivilege #EntraIdSecurity https://t.co/baNzY357zI

    Post summary

    CVE‑2026‑62873 targets the Microsoft 365 Admin Center; Microsoft has not released a local patch, so the advised response is to enforce stricter access controls and monitoring.

    0000071
    1.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftwindows_admin_center---

Explore more