Microsoft Kerberos for Windows是美国微软(Microsoft)公司的一个用于在网络集群中进行身份验证的软件。Kerberos 同时作为一种网络认证协议,其设计目标是通过密钥系统为客户机/服务器应用程序提供强大的认证服务。 Microsoft Kerberos 安全功能绕过漏洞,目前尚无此漏洞的相关信息,请随时关注CNNVD或厂商公告。以下产品及版本受到影响:Windows Server, version 20H2 (Server Core Installation),Wind
| 厂商 | 产品 | 版本范围 | 状态 |
|---|---|---|---|
| Microsoft | Windows Server 2012 | 6.2.9200.0< 6.2.9200.23298 |
affected |
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0< 6.2.9200.23298 |
affected |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0< 6.3.9600.19968 |
affected |
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0< 6.3.9600.19968 |
affected |
| Microsoft | Windows Server 2016 | 10.0.14393.0< 10.0.14393.4283 |
affected |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0< 10.0.14393.4283 |
affected |
| Microsoft | Windows Server 2019 | 10.0.17763.0< 10.0.17763.1817 |
affected |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0< 10.0.17763.1817 |
affected |
| Microsoft | Windows Server version 2004 | 10.0.0< 10.0.19043.867 |
affected |
| Microsoft | Windows Server version 20H2 | 10.0.0< 10.0.19043.867 |
affected |
| Microsoft | Windows Server, version 1903 (Server Core installation) | 10.0.0< publication |
affected |
| Microsoft | Windows Server, version 1909 (Server Core installation) | 10.0.0< 10.0.18363.1440 |
affected |
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| Microsoft | Windows Server 2012 | 6.2.9200.0 ~ 6.2.9200.23298 | - |
|
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0 ~ 6.2.9200.23298 | - |
|
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0 ~ 6.3.9600.19968 | - |
|
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0 ~ 6.3.9600.19968 | - |
|
| Microsoft | Windows Server 2016 | 10.0.14393.0 ~ 10.0.14393.4283 | - |
|
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0 ~ 10.0.14393.4283 | - |
|
| Microsoft | Windows Server 2019 | 10.0.17763.0 ~ 10.0.17763.1817 | - |
|
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 ~ 10.0.17763.1817 | - |
|
| Microsoft | Windows Server version 2004 | 10.0.0 ~ 10.0.19043.867 | - |
|
| Microsoft | Windows Server version 20H2 | 10.0.0 ~ 10.0.19043.867 | - |
|
| Microsoft | Windows Server, version 1903 (Server Core installation) | 10.0.0 ~ publication | - |
|
| Microsoft | Windows Server, version 1909 (Server Core installation) | 10.0.0 ~ 10.0.18363.1440 | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|
未找到公开 POC。
登录以生成 AI POC| CVE-2020-17132 | 9.1 CRITICAL | Microsoft Exchange Server 代码注入漏洞 |
| CVE-2020-17142 | 9.1 CRITICAL | Microsoft Exchange Server 代码注入漏洞 |
| CVE-2020-17158 | 8.8 HIGH | Microsoft Dynamics 365 代码注入漏洞 |
| CVE-2020-17121 | 8.8 HIGH | Microsoft SharePoint 安全漏洞 |
| CVE-2020-17152 | 8.8 HIGH | Microsoft Dynamics 365 代码注入漏洞 |
| CVE-2020-17143 | 8.8 HIGH | Microsoft Exchange Server 信息泄露漏洞 |
| CVE-2020-17147 | 8.7 HIGH | Microsoft Dynamics 365 跨站脚本漏洞 |
| CVE-2020-17095 | 8.5 HIGH | Microsoft Windows Hyper-V 安全漏洞 |
| CVE-2020-17144 | 8.4 HIGH | Microsoft Exchange Server 代码问题漏洞 |
| CVE-2020-17141 | 8.4 HIGH | Microsoft Exchange Server 代码注入漏洞 |
| CVE-2020-17140 | 8.1 HIGH | Microsoft Windows SMB 信息泄露漏洞 |
| CVE-2020-17118 | 8.1 HIGH | Microsoft SharePoint 安全漏洞 |
| CVE-2020-17115 | 8.0 HIGH | 多款 Microsoft 输入验证错误漏洞 |
| CVE-2020-17150 | 7.8 HIGH | Microsoft Visual Studio Code 代码注入漏洞 |
| CVE-2020-17124 | 7.8 HIGH | Microsoft PowerPoint 安全漏洞 |
| CVE-2020-17156 | 7.8 HIGH | Microsoft Visual Studio 代码注入漏洞 |
| CVE-2020-17129 | 7.8 HIGH | Microsoft Excel 安全漏洞 |
| CVE-2020-17128 | 7.8 HIGH | Microsoft Office 365 安全漏洞 |
| CVE-2020-17127 | 7.8 HIGH | Microsoft Excel 安全漏洞 |
| CVE-2020-17125 | 7.8 HIGH | 多款 Microsoft 产品安全漏洞 |
显示前 20 条,共 58 条。 查看全部 → →
暂无评论