tech π₯ Exploit code out for major Microsoft SCCM flaw
Public proof-of-concept exploit code is now available for CVE-2026-47301, a critical vulnerability in Microsoft Configuration Manager (SCCM). Security researcher Omri Baso published the repository affecting Configuration Manager Primary Site Servers. This exploit combines several weaknesses, allowing a low-privileged domain user to gain SYSTEM-level execution. The attack targets the SMS_EXECUTIVE service, and DLL loading occurs every 5 minutes. Organizations must immediately apply Microsoft's security updates to mitigate this risk. π¨