CVE-2026-69712 – Windows Key Distribution Center Remote Code Execution Vulnerability

CVSS 8.8 IMPORTANT Critical - Same Day Deployment

“A low-privileged attacker could turn a specially crafted network request into code execution on a vulnerable Windows Server.”

CVE-2026-69712 is a critical use-after-free vulnerability in the Windows Key Distribution Center (KDC). An authenticated attacker with low-level access to an affected server could send a specially crafted request over the network and execute code on that server. Successful exploitation could have a high impact on confidentiality, integrity, and availability, and no user interaction is required.

Key Details

Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
CWE Classification
CWE-416
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.