Microsoft Windows Server 2019
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*
A spoofing vulnerability allowing the disclosure of NTLMv2 hashes has been identified in various supported versions of Microsoft Windows. This vulnerability could be exploited to authenticate as the user whose hash was disclosed.
Exploitation of this vulnerability leads to the disclosure of a user's NTLMv2 hash, allowing an attacker to authenticate as that user.
Users can apply the security updates provided by Microsoft to address this vulnerability. These security updates are available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5052000, KB5052040, KB5052016, KB5052038, and KB5052006.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.