CVE-2026-56155
Microsoft Windows 10 Version 1607, Windows 10 Version 1809, Windows Server 2012
Insufficient granularity of access control in Active Directory Federation Services (AD FS) allows an authorized attacker to elevate privileges locally.
- CVSS
- 7.8
- EPSS
- 0.38% 30.3% percentile
- CISA KEV
- Listed
- Published
- 2026.07.15