What is CVE-2026-54121?
CVE-2026-51021 allows a standard domain user to compromise the Enterprise Certificate Authority (CA) and escalate its privileges to effectively become a Domain Controller. Organizations must immediately apply the patch and treat their PKI infrastructure as Tier 0 assets.
Azərbaycanca: CVE-2026-51021 təhlükəsi, standart domen istifadəçisinə şəbəkədəki Enterprise Certificate Authority (CA) serverini zəbt edərək onu Domain Controller səviyyəsinə yüksəltməyə imkan verir. Bu zəiflikdən qorunmaq üçün CA serverləri Tier 0 aktivləri kimi qorunmalı və dərhal müvafiq yamaq tətbiq edilməlidir.
Related CVEs
link basis: shared vendor: Microsoft
FAQ2
What can an attacker achieve by exploiting CVE-2026-51021?
This vulnerability allows a standard domain user to compromise the Enterprise Certificate Authority (CA) and escalate its privileges to effectively become a Domain Controller.
What measures should be taken to protect against CVE-2026-51021?
Organizations must immediately apply the patch and treat their PKI infrastructure as Tier 0 assets.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.