PT-2015-4394 · Microsoft · System Center Virtual Machine Manager

Publicado

2015-02-11

·

Atualizado

2018-11-20

·

CVE-2015-0012

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft System Center Virtual Machine Manager (VMM) 2012 R2 Update Rollup 4
Description The issue allows local users to obtain server and virtual-machine administrative privileges by establishing a server session with Active Directory credentials. This is due to the software not properly validating the roles of users.
Recommendations For Microsoft System Center Virtual Machine Manager (VMM) 2012 R2 Update Rollup 4, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-0012

Produtos afetados

System Center Virtual Machine Manager