SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-69624

MEDIUM · CVSS 6.5 EPSS 0.71%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Active Directory Certificate Services (AD CS) has an incomplete list of disallowed inputs, which could allow an authorized attacker to manipulate data over the network. This vulnerability poses a medium risk, as it could lead to unauthorized changes in certificate issuance or validation processes. Organizations utilizing AD CS should prioritize remediation to mitigate potential tampering risks.

CVE
CVE-2026-69624
Severity
MEDIUM
CVSS
6.5
EPSS
0.71%

Original NVD Description

Incomplete list of disallowed inputs in Active Directory Certificate Services (AD CS) allows an authorized attacker to perform tampering over a network.