PT-2021-6253 · Microsoft · Local Security Authority (Lsa) Server+2
Edwardzpeng
+3
·
Published
2021-12-14
·
Updated
2023-12-28
·
CVE-2021-43216
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Local Security Authority (LSA) Server (affected versions not specified)
Description
The issue is related to an information disclosure vulnerability in the Microsoft Local Security Authority Subsystem Service (LSASS) of the Microsoft Windows operating system. This vulnerability can be exploited by a remote attacker to disclose protected information. The vulnerability is associated with an error in the data area, which can lead to the exposure of sensitive information.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exposure of Resource to Wrong Sphere
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lsass
Local Security Authority (Lsa) Server
Windows