AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-49179

HIGH · CVSS 8.8 EPSS 0.81%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

Windows Active Directory is vulnerable to command injection due to improper handling of special elements, enabling unauthorized attackers to execute arbitrary code remotely. This high-severity vulnerability (CVSS 8.8) poses significant risks to network security and should be prioritized by organizations using Windows environments, particularly those with exposed Active Directory services. Immediate remediation is essential to mitigate potential exploitation.

CVE
CVE-2026-49179
Severity
HIGH
CVSS
8.8
EPSS
0.81%
Windows

Original NVD Description

Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows an unauthorized attacker to execute code over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)