Jul 2026: Configuration Manager Elevation of Privilege Vulnerability
CVE-2026-47301 Published on July 14, 2026

Configuration Manager Elevation of Privilege Vulnerability
Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2026-47301 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2026-47301

Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.

 
 
 

Affected Versions

Microsoft Configuration Manager: Microsoft Configuration Manager 2509: Microsoft Configuration Manager 2603: