Security Feature Bypass in Windows Active Directory by Microsoft
CVE-2026-65777

5.3MEDIUM

What is CVE-2026-65777?

A security feature bypass vulnerability in Windows Active Directory arises from inadequate encryption strength, enabling an authorized attacker to exploit this weakness to bypass security measures over a network. This flaw poses a risk as it could potentially allow unauthorized access to sensitive data, undermining the integrity of network security. Organizations should ensure their Active Directory configurations are secure and promptly apply any patches or updates provided by Microsoft to mitigate this risk.

Affected Version(s)

Windows 11 version 23H2 ARM64-based Systems 10.0.22631.0 < 10.0.22631.7517

Windows 11 Version 23H2 x64-based Systems 10.0.22631.0 < 10.0.22631.7517

Windows 11 Version 24H2 ARM64-based Systems 10.0.26100.0 < 10.0.26100.9168

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.