CVE-2020-1472

CVSS 3.1 Score 10.0 of 10 (CRITICAL)

Attack Complexity
LOW
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH
Scope
CHANGED
Privileges Required
NONE
Summary

CVE-2020-1472 is an elevation of privilege vulnerability that allows unauthenticated attackers to establish a vulnerable Netlogon secure channel connection to a domain controller using the Netlogon Remote Protocol (MS-NRPC). If successfully exploited, an attacker could gain domain administrator access and run a specially crafted application on a networked device. Microsoft is addressing this vulnerability through a phased two-part rollout, with the first phase modifying how Netlogon handles secure channels. The second phase of updates is scheduled for Q1 2021. To manage the changes required for this vulnerability, consult Microsoft's guidelines on managing Netlogon secure channel connections associated with CVE-2020-1472. For updates on the phased rollout and release of the second phase of updates, register for Microsoft's security notifications mailer.

Details
  • Published: formatDate( 2020-08-17T19:15:15.117Z )
  • Updated: formatDate( 2024-05-23T17:56:29.137Z )
  • CWE ID: CWE-330