Microsoft Windows Server 2008
cpe:2.3:o:microsoft:windows_server_2008:*:*:*:*:*:*:*, +1 more
A vulnerability in the Windows Kerberos implementation allows unauthorized attackers to elevate privileges over a network. This issue arises from a missing cryptographic step, which could be exploited by convincing a user to connect to a malicious application server, potentially compromising the protocol.
Exploitation of this vulnerability could lead to unauthorized elevation of privileges, allowing an attacker to gain administrator rights.
Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5068781, KB5068861, KB5068904, KB5068905, KB5068906, KB5068907, KB5068908, KB5068864, KB5068779, KB5068840, KB5068966, and KB5068909.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.