Unrated severityNVD Advisory· Published Jan 30, 2026· Updated Feb 2, 2026
Local Privilege Escalation in Local Admin Service
CVE-2026-1680
Description
Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.
Affected products
2- Range: = 1.2.7.23180
- Edgemo (Danoffice IT)/Local Admin Servicev5Range: 1.2.7.23180
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- retest.dk/local-privilege-escalation-vulnerability-found-in-local-admin-service/mitreexploitthird-party-advisory
- www.danofficeit.com/howwedoit/workplace/management/mitreproduct
News mentions
0No linked articles in our index yet.