CVE-2026-54121

Élevée8.8Publiée le 14 juillet 2026

Autorisation incorrecte dans Active Directory Certificate Services (AD CS) permet à un attaquant autorisé d'élever ses privilèges sur le réseau.

Score CVSS8.8 / 10CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Type de faiblesse (CWE)CWE-285
Éditeursmicrosoft

Produits concernés

ÉditeursProduitVersions
microsoftwindows 10 1607< 10.0.14393.9339
microsoftwindows 10 1809< 10.0.17763.9020
microsoftwindows server 2012-
microsoftwindows server 2016< 10.0.14393.9339
microsoftwindows server 2019< 10.0.17763.9020
microsoftwindows server 2022< 10.0.20348.5386
microsoftwindows server 2025< 10.0.26100.33158

Articles liés

This product uses the NVD API but is not endorsed or certified by the NVD.

La description technique est notre traduction du texte original du NVD, en anglais.

Base de données CVE