One-Click RCE in Azure Windows Admin Center Allow Attacker to Execute Arbitrary Commands
ID: bd8b099b-5004-567c-a7c2-cd562b24dcae
STIX ID: report--bd8b099b-5004-567c-a7c2-cd562b24dcae
Feed Name: cybersecurityNews.com
Threat Score
Cymulate Research Labs disclosed a critical unauthenticated remote code execution vulnerability in Microsoft Windows Admin Center that can be triggered via a crafted URL and unsanitized responses, enabling credential harvesting, arbitrary PowerShell execution on managed servers, and full tenant/cloud compromise; Microsoft has applied server-side patches to protect Azure-managed instances, but on-premises deployments must be updated immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
