CVE-2026-69555: Azure Arc Elevation of Privilege Vulnerability
Published Aug 20, 2026
·Updated
Azure Arc Elevation of Privilege Vulnerability
Other sources
Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
— Microsoft
Affected Software
1 affected component
Microsoft Azure ARC
Event History
Aug 20, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·09:47 PM
Data Sourced
via MITRE·09:47 PM
DescriptionSeverity
Frequently Asked Questions
1
What level of access does an attacker need to exploit this vulnerability?
The vulnerability can be exploited over the network without prior privileges or user interaction. The attack complexity is rated low.
2
What is the potential impact if exploitation succeeds?
A successful attack could allow an unauthorized attacker to elevate privileges in Azure Arc. The listed impact includes high confidentiality and integrity impact, with scope changed; no availability impact is listed.