CVE-2026-13097Redhat · Enterprise_linux
Vulnerability data via NVD (ingested)
A privilege escalation flaw was found in FreeIPA. The uniqueness constraint enforced on Kerberos principal name attributes in the 389-ds directory server does not properly account for equivalent representations of the same principal name, allowing a user with sufficient LDAP write privileges to create a service principal that impersonates an existing privileged one. This can lead to unauthorized acquisition of Kerberos service tickets for sensitive services, potentially resulting in full domain compromise.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common). Live host counts are a Premium feature.
vuln:CVE-2026-13097os:"Enterprise Linux"More intel sources (5)
vuln:CVE-2026-13097vulnerabilities.cve_id: CVE-2026-13097CVE-2026-13097CVE-2026-13097"CVE-2026-13097" exploit -site:nvd.nist.gov