VID |
23318 |
Severity |
40 |
Port |
445 |
Protocol |
TCP |
Class |
SMB |
Detailed Description |
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC), aka 'Netlogon Elevation of Privilege Vulnerability'.
* References: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472
* Platforms Affected: Windows Server 2008 R2 SP1 Windows Server 2008 R2 x64 SP1 Windows Server 2012 Windows Server 2012 R2 Windows Server 2016 |
Recommendation |
Download and apply the security update from the MS site https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472 |
Related URL |
CVE-2020-1472 (CVE) |
Related URL |
(SecurityFocus) |
Related URL |
(ISS) |
|