Jul 2026: Windows Admin Center (WAC) Remote Code Execution Vulnerability
CVE-2026-58631 Published on July 14, 2026

Windows Admin Center (WAC) Remote Code Execution Vulnerability
Improper authorization in Windows Admin Center allows an authorized attacker to execute code locally.

Vendor Advisory NVD

Weakness Type

What is an AuthZ Vulnerability?

The software does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.

CVE-2026-58631 has been classified to as an AuthZ vulnerability or weakness.


Products Associated with CVE-2026-58631

Want to know whenever a new CVE is published for Microsoft Windows Admin Center? stack.watch will email you.

 

Affected Versions

Microsoft Windows Admin Center: