What is CVE-2026-65668?
Improper access control in Microsoft Purview eDiscovery (CVE-2026-65668) allows an authorized attacker to elevate privileges over a network. This could enable an authorized user to exceed their existing permissions. Organizations should apply Microsoft security updates and review network access controls.
Azərbaycanca: Microsoft Purview eDiscovery-də icazəsiz giriş zəifliyi (CVE-2026-65668) şəbəkə üzərindən səlahiyyətli hücumçuya imtiyazları artırmağa imkan verir. Bu, səlahiyyətli istifadəçinin mövcud icazələrini aşmasına səbəb ola bilər. Təşkilatlar Microsoft-un təhlükəsizlik yeniləmələrini tətbiq etməli və şəbəkə giriş nəzarətlərini nəzərdən keçirməlidir.
Related CVEs
link basis: same weakness class CWE-284; shared vendor: Microsoft
FAQ2
Which Microsoft product is affected by CVE-2026-65668?
This vulnerability affects Microsoft Purview eDiscovery.
What privileges must an attacker have to exploit CVE-2026-65668?
The attacker must be an authorized user over a network.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.