SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-80097

HIGH · CVSS 8.6 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Microsoft Authenticator is vulnerable due to improper authentication, enabling unauthorized attackers to gain local privilege escalation. This flaw poses a significant risk as it could allow attackers to execute arbitrary code with elevated permissions on affected systems. Organizations using Microsoft Authenticator should prioritize addressing this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-80097
Severity
HIGH
CVSS
8.6
EPSS
0.40%
Microsoft

Original NVD Description

Improper authentication in Microsoft Authenticator allows an unauthorized attacker to elevate privileges locally.