CVE-2022-26925
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Summary
CVE-2022-26925 is a critical Windows Local Security Authority (LSA) spoofing vulnerability. Hackers can exploit this flaw to gain unauthorized access to a system, potentially leading to privilege escalation and data theft. The bug occurs due to an improper validation of Security Identifier (SID) in the LSA, making it vulnerable to spoofing attacks. This vulnerability impacts Windows Server 2008 and later versions, and successful exploitation requires no user interaction. Mitigation measures include applying Microsoft's security update or enabling Protected Process Light (PPL) on affected systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.