Executive brief
Windows Modern Device Management (MDM) is a system that allows administrators to manage corporate devices and enforce policies. A flaw in its authorization logic permits an authenticated local user to escalate their privileges to a higher level, potentially gaining administrator access or the ability to modify system configuration.
Technical details
This vulnerability is a missing authorization check in Windows Modern Device Management (MDM) that allows privilege escalation. An authorized local attacker can exploit a lack of proper access controls to elevate their privileges on the affected system. The attack requires local access and an existing user account on the system. Successful exploitation grants the attacker elevated privileges, potentially enabling them to modify system settings, install software, or access sensitive data. A patch addressing the authorization bypass is available from Microsoft.
Affected products
- Microsoft Windows Modern Device Management
Timeline
- 2026-09-08: disclosed