
A PoC/exploit has been discovered for vulnerability CVE-2026-49179 PT ID: PT-2026-70385 Vendor: Microsoft Product: Windows 10 Version 1607 Description: Improper neutralization of special elements used in a command ('command injection') in Windows Active Directory allows an unauthorized attacker to execute code over a network. References: • https://dbu.gs/vulnerability/PT-2026-70385 • https://github.com/overgrowncarrot1/cve-2026-49179-active-directory-writespnscript-command-injection


