Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8xv7-7xwv-fw3m

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default setting that lets an attacker in the trusting forest request delegation of a TGT for an identity from the trusted forest, aka 'Active Directory Elevation of Privilege Vulnerability'.

An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default setting that lets an attacker in the trusting forest request delegation of a TGT for an identity from the trusted forest, aka 'Active Directory Elevation of Privilege Vulnerability'.

EPSS

Процентиль: 91%
0.06594
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 5.9
nvd
около 6 лет назад

An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default setting that lets an attacker in the trusting forest request delegation of a TGT for an identity from the trusted forest, aka 'Active Directory Elevation of Privilege Vulnerability'.

CVSS3: 4.9
msrc
больше 6 лет назад

Active Directory Elevation of Privilege Vulnerability

CVSS3: 4.9
fstec
больше 6 лет назад

Уязвимость службы каталогов Active Directory Forest операционных систем Windows, позволяющая нарушителю повысить свои привилегии

msrc
больше 6 лет назад

Guidance to mitigate unconstrained delegation vulnerabilities

EPSS

Процентиль: 91%
0.06594
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-276