Insufficient granularity of access control in Microsoft Exchange Server allows an authorized attacker to elevate privileges locally.
microsoft·CWE-1220·Published 2026-07-14