CyberRota Analysis
AI-GeneratedActive Directory Certificate Services (AD CS) has an incomplete list of disallowed inputs, which could allow an authorized attacker to manipulate data over the network. This vulnerability poses a medium risk, as it could lead to unauthorized changes in certificate issuance or validation processes. Organizations utilizing AD CS should prioritize remediation to mitigate potential tampering risks.
CVE
CVE-2026-69624
Severity
MEDIUM
CVSS
6.5
EPSS
0.71%
Original NVD Description
Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized attacker to perform tampering over a network.