High severity7.8NVD Advisory· Published Jan 30, 2026· Updated Jun 17, 2026
CVE-2026-1680
CVE-2026-1680
Description
Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:danofficeit:local_admin_service:1.2.7.23180:*:*:*:*:windows:*:*
- Range: = 1.2.7.23180
- Edgemo (Danoffice IT)/Local Admin Servicev5Range: 1.2.7.23180
Patches
Vulnerability mechanics
References
2- retest.dk/local-privilege-escalation-vulnerability-found-in-local-admin-service/nvdExploitThird Party Advisory
- www.danofficeit.com/howwedoit/workplace/management/nvdProduct
News mentions
0No linked articles in our index yet.