CVE Tools

CVE-2026-62869

Azure Entra ID Spoofing Vulnerability

Published: Aug 11, 2026Updated: Aug 13, 2026 Sources: CVE List NVDCWE-345

Description

Insufficient verification of data authenticity in Azure Entra ID allows an authorized attacker to perform spoofing over a network.

In plain language

AI Act now

CVE-2026-62869 is a Microsoft Entra ID weakness where a remotely authenticated attacker may be able to impersonate other identities. This is serious enough for most small businesses to act quickly—especially if your Entra ID is exposed to untrusted logins or you have accounts or integrations that could be abused.

Executive summary

CVE-2026-62869 is an Azure/Microsoft Entra ID spoofing issue caused by insufficient verification of identity/source authenticity; a remote attacker with low-level authentication can convince Entra ID that data is genuine even when it was tampered with, enabling full compromise of confidentiality, integrity, and availability.

If affected, business impact
Account impersonation and takeoverSensitive data exposureSecurity controls bypassService disruption risk

What to do now

  1. Check whether you run Microsoft Entra ID (or rely on Microsoft Entra ID features like login, SSO, or access control).
  2. Review your most recent Entra ID/Microsoft identity updates and confirm you have applied the fix from the MSRC guidance for CVE-2026-62869.
  3. If you cannot confirm the update status, contact your Microsoft/IT support channel and ask specifically whether CVE-2026-62869 has been remediated for your Entra ID configuration.
  4. Identify and reduce exposure of any accounts, service principals, API permissions, or integrations that could provide “low-level” authentication to Entra ID, and rotate secrets/credentials where needed.
Patch / advisory Some work to apply

CVSS Vector Breakdown

AV:NAC:LPR:LUI:NS:UC:HI:HA:H
Exploitability
AV:NAttack Vector
Network
AC:LAttack Complexity
Low
PR:LPrivileges Required
Low
UI:NUser Interaction
None
Scope
S:UScope
Unchanged
Impact
C:HConfidentiality
High
I:HIntegrity
High
A:HAvailability
High

Weaknesses

Affected Products

Exploitability

Official Patch Available

Attack Graph

Products CVE Techniques Tactics

Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/ + scroll to zoom, or go fullscreen.

MITRE ATT&CK

1 technique
Collection
View detailed technique mapping

References

4

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2026-62869 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows