What is CVE-2026-56155?
CVE-2026-56155 is a privilege escalation vulnerability in Microsoft Active Directory Federation Services caused by insufficient granularity of access control. It allows an authorized attacker to elevate privileges locally. Immediate patching via the April 2026 Security Update is strongly recommended.
Azərbaycanca: CVE-2026-56155 Microsoft Active Directory Federation Services (AD FS)-də aşkarlanmış imtiyaz yüksəltmə (privilege escalation) zəifliyidir. Bu qüsur səlahiyyətli təcavüzkara lokal olaraq daha yüksək icazələr əldə etməyə imkan verir. Təcili olaraq aprel 2026 təhlükəsizlik yeniləmələrini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: shared vendors: Adobe, Microsoft
FAQ2
What can an attacker gain by successfully exploiting CVE-2026-56155?
CVE-2026-56155 is a privilege escalation vulnerability in Microsoft Active Directory Federation Services. An authorized attacker can exploit this flaw locally to elevate their privileges.
What is the recommended mitigation for CVE-2026-56155?
To remediate this vulnerability, it is strongly recommended to immediately apply the Microsoft April 2026 Security Update.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.