After a specific user or a specific group is provided with the permission to add or to remove computer objects to the domain on an organizational unit (OU) through the Delegation Wizard, users can't add some of the computers to the domain.
These symptoms may occur if one or more of the following conditions are true:
-A user or a group hasn't been granted the Reset Passwords permission for the computer objects.
-Users have been delegated control of the Account Operators group or are members of the Account Operators group. These users haven't been granted the Read permission on the built-in OU in "Active Directory Users and Computers."
You can use these article for resolution steps https://learn.microsoft.com/en-us/troubleshoot/windows-server/identity/access-denied-when-joining-computers
--If the reply is helpful, please Upvote and Accept it as an answer--