CVE-2026-25177

Published Mar 10, 2026

Last updated 5 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2026-25177 is a privilege escalation vulnerability found within Microsoft Active Directory Domain Services (AD DS). This flaw stems from an improper restriction of names for files and other resources, categorized under CWE-641. An authorized attacker with low-privilege network access can exploit this vulnerability to elevate their privileges over the network. Exploitation of CVE-2026-25177 can lead to an attacker gaining unauthorized access to sensitive domain resources and administrative capabilities, potentially achieving SYSTEM-level control over affected Windows systems. This vulnerability affects a wide range of Windows operating systems and server editions, making it relevant to environments utilizing Active Directory infrastructure.

Description
Improper restriction of names for files and other resources in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
Source
secure@microsoft.com
NVD status
Analyzed
Products
windows_10_1607, windows_10_1809, windows_10_21h2, windows_10_22h2, windows_11_23h2, windows_11_24h2, windows_11_25h2, windows_11_26h1, windows_server_2012, windows_server_2016, windows_server_2019, windows_server_2022, windows_server_2022_23h2, windows_server_2025

Risk scores

CVSS 3.1

Type
Primary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

secure@microsoft.com
CWE-641

Social media

Hype score
Not currently trending

Configurations

References

Sources include official advisories and independent security research.