Skip to content
CodeAuditAgent

CVE-2026-69624

Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized attacker to perform tampering over a network.

Weakness

Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized attacker to perform tampering over a network.

Affected products

  • microsoft windows_10_1607
  • microsoft windows_10_1809
  • microsoft windows_server_2012
  • microsoft windows_server_2016
  • microsoft windows_server_2019
  • microsoft windows_server_2022
  • microsoft windows_server_2025

References

Find the bug before an attacker does.

Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.