Aug 2026: Azure Active Directory Elevation of Privilege Vulnerability
CVE-2026-50481 Published on August 6, 2026

Azure Active Directory Elevation of Privilege Vulnerability
Modification of assumed-immutable data (maid) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

What is a MAID Vulnerability?

The software does not properly protect an assumed-immutable element from being modified by an attacker. This occurs when a particular input is critical enough to the functioning of the application that it should not be modifiable at all, but it is. Certain resources are often assumed to be immutable when they are not, such as hidden form fields in web applications, cookies, and reverse DNS lookups.

CVE-2026-50481 has been classified to as a MAID vulnerability or weakness.


Products Associated with CVE-2026-50481

Want to know whenever a new CVE is published for Microsoft Azure Active Directory? stack.watch will email you.

 

Affected Versions

Microsoft Azure Active Directory Version - is affected by CVE-2026-50481