Executive brief
A security vulnerability exists in the Windows Administrator Protection feature, which is designed to safeguard administrative privileges on the operating system. An attacker who already has basic access to a computer could exploit this flaw to bypass security restrictions and gain higher-level control over the system. This could lead to unauthorized changes, data theft, or full system compromise by circumventing intended administrative safeguards.
Technical details
A vulnerability classified as improper access control (CWE-284) exists within the Windows Administrator Protection component. The flaw allows a locally authenticated attacker with low privileges to bypass security boundaries intended to restrict administrative actions. By exploiting this weakness, an attacker can achieve full confidentiality, integrity, and availability impact on the local system. The attack requires local access but no user interaction. Microsoft has released information regarding this vulnerability as part of its security updates, and users are advised to apply the latest Windows patches to mitigate the risk.
Affected products
- Microsoft Windows Not specified
Timeline
- 2026-06-09: advisory: Microsoft and NVD published the vulnerability details.