CVE-2026-50684
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
Faiblesse
Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.
Produits concernés
- microsoft windows_10_1607
- microsoft windows_10_1809
- microsoft windows_server_2012
- microsoft windows_server_2016
- microsoft windows_server_2019
- microsoft windows_server_2022
- microsoft windows_server_2025
Références
Trouvez la faille avant un attaquant.
Connectez-vous avec GitHub et lancez votre premier audit en moins d'une minute. L'offre gratuite ne nécessite aucune carte bancaire.