Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w6c-58mr-5mwx

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a crafted request that triggers name collisions, aka "Active Directory SPN Validation Vulnerability."

The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a crafted request that triggers name collisions, aka "Active Directory SPN Validation Vulnerability."

EPSS

Процентиль: 97%
0.40229
Средний

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 15 лет назад

The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a crafted request that triggers name collisions, aka "Active Directory SPN Validation Vulnerability."

EPSS

Процентиль: 97%
0.40229
Средний

Дефекты

CWE-20