⚡ Exploit-DB.ai HIGH
HIGH

CVE-2022-26923

Published: March 18, 2026 · Source: National Vulnerability Database (NVD)

⚡ AI Threat Assessment

Certifried: Any authenticated domain user can escalate to Domain Admin via ADCS certificate abuse. Apply patches and review your ADCS certificate templates with Certify or Certipy. Disable SAN specification in user templates.

📋 Official Description

Active Directory Certificate Services could allow an authenticated user to obtain a certificate that allows domain privilege escalation (Certifried).

Get Real-Time CVE Alerts

Supernova subscribers receive AI-triaged CVE alerts the moment they're published — before the PoC drops.

Start Supernova — $99/mo →