Описание
Windows Key Distribution Center Remote Code Execution Vulnerability
Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network.
FAQ
How could an attacker exploit this vulnerability?
An authenticated attacker with low-level access to an affected server could send a specially crafted request to execute code on the server. User interaction is not required.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| Windows Server 2012 | ||
| Windows Server 2012 (Server Core installation) | ||
| Windows Server 2012 R2 | ||
| Windows Server 2012 R2 (Server Core installation) | ||
| Windows Server 2016 | ||
| Windows Server 2016 (Server Core installation) | ||
| Windows Server 2019 | ||
| Windows Server 2019 (Server Core installation) | ||
| Windows Server 2022 | ||
| Windows Server 2022 (Server Core installation) |
Показывать по
10
Возможность эксплуатации
Publicly Disclosed
No
Exploited
No
Latest Software Release
Exploitation Less Likely
EPSS
Процентиль: 58%
0.00894
Низкий
8.8 High
CVSS3
Связанные уязвимости
CVSS3: 8.8
nvd
5 дней назад
Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network.
CVSS3: 8.8
github
5 дней назад
Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network.
EPSS
Процентиль: 58%
0.00894
Низкий
8.8 High
CVSS3