Main
Vulnerability Database
Exploits
ID:13062 - Exploit for Improper Authorization in Windows Server - CVE-2026-27912
ID:13062 - Exploit for Improper Authorization in Windows Server - CVE-2026-27912
Published: September 4, 2026
Vulnerability identifier: #VU126132
Vulnerability risk: Medium
CVE-ID: CVE-2026-27912
CWE-ID: CWE-285
Exploitation vector: Adjecent network
Vulnerable software:
Windows Server
Windows Server
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to bypass authorization checks.
The vulnerability exists due to insufficient authorization controls in Windows Kerberos. A remote user on the local network can gain elevated privileges on the target system.
Remediation
Install updates from vendor's website.