| VID |
23318 |
| Severity |
40 |
| Port |
445 |
| Protocol |
TCP |
| Class |
SMB |
| Detailed Description |
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC), aka 'Netlogon Elevation of Privilege Vulnerability'.
* References: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
* Platforms Affected: Windows Server 2008 R2 SP1 Windows Server 2008 R2 x64 SP1 Windows Server 2012 Windows Server 2012 R2 Windows Server 2016 |
| Recommendation |
Download and apply the security update from the MS site https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472 |
| Related URL |
CVE-2020-1472 (CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
(ISS) |
|