Vulnerability Name: | CVE-2020-17049 (CCN-190721) | ||||||||||||||||||||||||||||||||
Assigned: | 2020-11-10 | ||||||||||||||||||||||||||||||||
Published: | 2020-11-10 | ||||||||||||||||||||||||||||||||
Updated: | 2022-08-29 | ||||||||||||||||||||||||||||||||
Summary: | Kerberos Security Feature Bypass Vulnerability | ||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.2 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H) 6.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C)
6.1 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C)
| ||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 9.0 High (CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
| ||||||||||||||||||||||||||||||||
Vulnerability Type: | CWE-863 | ||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Bypass Security | ||||||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2020-17049 Source: MLIST Type: Mailing List, Third Party Advisory [oss-security] 20211110 Fwd: Samba 4.15.2, 4.14.10, 4.13.14 Security Releases are available for Download Source: CCN Type: NetSPI Blog, December 8th, 2020 CVE-2020-17049: Kerberos Bronze Bit Attack Overview Source: XF Type: UNKNOWN ms-windows-cve202017049-sec-bypass(190721) Source: CCN Type: Impacket GIT Repository Adding CVE-2020-17049 exploit Source: CCN Type: Microsoft Security TechCenter - November 2020 Kerberos Security Feature Bypass Vulnerability Source: MISC Type: Patch, Vendor Advisory https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17049 | ||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||
BACK |