logo

One-Click RCE in Azure Windows Admin Center Allow Attacker to Execute Arbitrary Commands

ID: bd8b099b-5004-567c-a7c2-cd562b24dcae

STIX ID: report--bd8b099b-5004-567c-a7c2-cd562b24dcae

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-04-17

Date Updated: 2026-04-21

Author: Abinaya

...
...

Cymulate Research Labs disclosed a critical unauthenticated remote code execution vulnerability in Microsoft Windows Admin Center that can be triggered via a crafted URL and unsanitized responses, enabling credential harvesting, arbitrary PowerShell execution on managed servers, and full tenant/cloud compromise; Microsoft has applied server-side patches to protect Azure-managed instances, but on-premises deployments must be updated immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.