Update

added the new Prevent Certificate Enrollment with arbitrary Application Policies (ESC15)

December 2024
New security posture assessment: Prevent Certificate Enrollment with arbitrary Application Policies (ESC15)

Defender for Identity has added the new Prevent Certificate Enrollment with arbitrary Application Policies (ESC15) recommendation in Microsoft Secure Score.

This recommendation directly addresses the recently published CVE-2024-49019, which highlights security risks associated with vulnerable AD CS configurations. This security posture assessment lists all vulnerable certificate templates found in customer environments due to unpatched AD CS servers.

The new recommendation is added to other AD CS-related recommendations. Together, these assessments offer security posture reports that surface security issues and severe misconfigurations that post risks to the entire organization, together with related detections.

Version: December 2024 Update Link
Receive Important Update Messages Stay tuned for upcoming Microsoft Defender for Identity updates

Was the content helpful to you?

Advertisement Advertise here?
Udemy IT certification ad