Skip to main content

Tag: kerberos

1 article

Dimly lit computer server room with rows of generic servers and empty rack space.

FreeIPA Flaw Enables Anonymous Clients to Create Admin Credentials

A critical vulnerability in FreeIPA, tracked as CVE-2026-76578, allows an unauthenticated client to create admin credentials by exploiting a chain of defects that lets them create a Kerberos identity and join the administrators group. This flaw, with a preliminary CVSS score of 9.8, was fixed in FreeIPA version 4.13.4.

Analyst 207