Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Danofficeit
Danofficeit local Admin Service |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:danofficeit:local_admin_service:1.2.7.23180:*:*:*:*:windows:*:* | |
| Vendors & Products |
Danofficeit
Danofficeit local Admin Service |
|
| Metrics |
cvssV3_1
|
Tue, 03 Feb 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Danoffice It
Danoffice It local Admin Service |
|
| Vendors & Products |
Danoffice It
Danoffice It local Admin Service |
Mon, 02 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 30 Jan 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions. | |
| Title | Local Privilege Escalation in Local Admin Service | |
| Weaknesses | CWE-250 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: NCSC-FI
Published: 2026-01-30T06:00:31.449Z
Updated: 2026-02-02T16:33:39.478Z
Reserved: 2026-01-30T05:57:27.965Z
Link: CVE-2026-1680
Updated: 2026-01-30T14:35:55.068Z
Status : Analyzed
Published: 2026-01-30T07:16:15.350
Modified: 2026-03-03T15:06:54.563
Link: CVE-2026-1680
No data.