CVE-2026-20967: System Center Operations Manager (SCOM) Elevation of Privilege Vulnerability
Improper input validation in System Center Operations Manager allows an authorized attacker to elevate privileges over a network.
Other sources
System Center Operations Manager (SCOM) Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20967?
CVE-2026-20967 has a severity rating of important, which indicates a significant elevation of privilege vulnerability.
How do I fix CVE-2026-20967?
To address CVE-2026-20967, you should apply the latest security updates available from Microsoft for your version of System Center Operations Manager.
Which versions of System Center Operations Manager are affected by CVE-2026-20967?
CVE-2026-20967 affects System Center Operations Manager 2019, 2022, and 2025.
What type of vulnerability is CVE-2026-20967?
CVE-2026-20967 is classified as an elevation of privilege vulnerability due to improper input validation.
Who is affected by CVE-2026-20967?
Authorized attackers using CVE-2026-20967 can potentially exploit this vulnerability to elevate privileges over a network.