Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The LDAP over SSL (aka LDAPS) implementation in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not examine Certificate Revocation Lists (CRLs), which allows remote authenticated users to bypass intended certificate restrictions and access Active Directory resources by leveraging a revoked X.509 certificate for a domain account, aka "LDAPS Authentication Bypass Vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Windows 特权提升漏洞
Vulnerability Description
Microsoft Windows Vista是是美国微软(Microsoft)公司发布的一套操作系统。 Microsoft Windows的Active Directory 中存在一个特权提升漏洞。攻击者可以通过使用以前吊销的证书向 Active Directory 域执行身份验证来利用此漏洞,并获取对网络资源的访问权限,或者使用证书与之相关联的特定授权用户的权限运行代码。
CVSS Information
N/A
Vulnerability Type
N/A