CyberRota Analysis
AI-GeneratedWindows Admin Center is vulnerable to cross-site scripting (XSS) due to improper input neutralization during web page generation. This flaw enables unauthorized attackers to execute spoofing attacks over the network, potentially compromising user sessions or manipulating content. Organizations using Windows Admin Center should prioritize addressing this vulnerability to mitigate risks related to unauthorized access and data integrity.
CVE
CVE-2026-58643
Severity
MEDIUM
CVSS
6.1
EPSS
0.24%
Windows
Original NVD Description
Improper neutralization of input during web page generation ('cross-site scripting') in Windows Admin Center allows an unauthorized attacker to perform spoofing over a network.
Related CVEs
Other vulnerabilities affecting the same vendor(s)