PT-2024-1153 · Microsoft · Windows Server Key Distribution Service+1

Published

2024-01-09

·

Updated

2024-05-29

·

CVE-2024-21316

CVSS v2.0

7.7

High

VectorAV:N/AC:L/Au:M/C:C/I:C/A:N
Name of the Vulnerable Software and Affected Versions Windows Server Key Distribution Service (affected versions not specified)
Description The issue is related to errors in the certificate authentication procedure of the Windows Server Key Distribution Service. It allows a remote attacker to bypass existing security restrictions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

BDU:2024-00475
CVE-2024-21316

Affected Products

Windows
Windows Server Key Distribution Service