


Perceptive Security
SOC/SIEM Consultancy

Improper access control in Microsoft Partner Center allows an authorized attacker to elevate privileges over a network.
Published:
22 april 2026 om 22:00:00
Alert date:
23 april 2026 om 23:04:51
Source:
nvd.nist.gov
Identity & Access, Enterprise Applications, Cloud & Virtualization
A vulnerability in Microsoft Partner Center allows improper access control, enabling authorized attackers to elevate their privileges over a network. This represents a significant security risk as it affects Microsoft's partner ecosystem and could allow attackers with initial access to gain elevated permissions. The vulnerability is tracked as CVE-2026-24303 and has been assigned a high criticality rating due to the potential for privilege escalation attacks.
Technical details
Mitigation steps:
Affected products:
Microsoft Partner Center
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-24303
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24303
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
