Количество 4
Количество 4

CVE-2020-0837
<p>An elevation of privilege vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests. An attacker who successfully exploited this vulnerability could bypass some, but not all, of the authentication factors.</p> <p>To exploit this vulnerability, an attacker could send a specially crafted authentication request.</p> <p>This security update corrects how ADFS handles multi-factor authentication requests.</p>

CVE-2020-0837
ADFS MFA Elevation of Privilege Vulnerability
GHSA-cxc9-2m79-6f46
A spoofing vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests.To exploit this vulnerability, an attacker could send a specially crafted authentication request, aka 'ADFS Spoofing Vulnerability'.

BDU:2020-04309
Уязвимость службы Active Directory Federation Services (AD FS) операционных систем Windows, позволяющая нарушителю проводить спуфинг атаки
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2020-0837 <p>An elevation of privilege vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests. An attacker who successfully exploited this vulnerability could bypass some, but not all, of the authentication factors.</p> <p>To exploit this vulnerability, an attacker could send a specially crafted authentication request.</p> <p>This security update corrects how ADFS handles multi-factor authentication requests.</p> | CVSS3: 5 | 1% Низкий | почти 5 лет назад |
![]() | CVE-2020-0837 ADFS MFA Elevation of Privilege Vulnerability | CVSS3: 5 | 1% Низкий | почти 5 лет назад |
GHSA-cxc9-2m79-6f46 A spoofing vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests.To exploit this vulnerability, an attacker could send a specially crafted authentication request, aka 'ADFS Spoofing Vulnerability'. | CVSS3: 5 | 1% Низкий | около 3 лет назад | |
![]() | BDU:2020-04309 Уязвимость службы Active Directory Federation Services (AD FS) операционных систем Windows, позволяющая нарушителю проводить спуфинг атаки | CVSS3: 5 | 1% Низкий | почти 5 лет назад |
Уязвимостей на страницу