CVE-2026-96207: Microsoft Partner Center Elevation of Privilege Vulnerability
Published Oct 8, 2026
·Updated
Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
Other sources
Microsoft Partner Center Elevation of Privilege Vulnerability
— Microsoft
Affected Software
2 affected components
Microsoft Partner Center
Microsoft Partner Center
Event History
Oct 8, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
CVE Published
via MITRE·10:15 PM
Data Sourced
via MITRE·10:15 PM
DescriptionSeverity
Data Sourced
via NVD·11:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
No privileges or user interaction are required. The vulnerability is exploitable over a network.
2
What is the potential impact if exploitation succeeds?
An unauthorized attacker could elevate privileges. The supplied severity metrics indicate high confidentiality and integrity impact, with no availability impact stated.
3
Which deployments should be considered exposed?
The affected software is identified as Microsoft Partner Center. The provided data does not distinguish particular versions, configurations, or deployment types.