You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cvss integrity availability
About this tag
The cvss integrity availability tag covers discussions of vulnerabilities where the CVSS vector emphasizes high integrity and availability impact over confidentiality. A key example is CVE-2026-35438, a Windows Admin Center elevation-of-privilege flaw that allows an attacker to abuse the update path to install arbitrary versions from Microsoft's catalog. This bug is characterized by low confidentiality impact but high integrity and availability impact, as it enables altering or disrupting the management plane rather than stealing data. The tag is relevant for security researchers and IT professionals analyzing CVSS scoring nuances, particularly for vulnerabilities that target system integrity and availability in Windows enterprise tools.
CVE-2026-35438 is a Windows Admin Center elevation-of-privilege vulnerability in which a low-privileged attacker could abuse the product’s update path to install an arbitrary available Windows Admin Center version from Microsoft’s update catalog, potentially altering or disrupting the existing...