Microsoft Windows Kerberos Privilege Escalation Vulnerability

Vulnerability

A vulnerability in the Windows Kerberos implementation allows unauthorized attackers to elevate privileges over a network. This issue arises from a missing cryptographic step, which could be exploited by convincing a user to connect to a malicious application server, potentially compromising the protocol.

Impact

Exploitation of this vulnerability could lead to unauthorized elevation of privileges, allowing an attacker to gain administrator rights.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5068781, KB5068861, KB5068904, KB5068905, KB5068906, KB5068907, KB5068908, KB5068864, KB5068779, KB5068840, KB5068966, and KB5068909.

Added: Nov 11, 2025, 7:27 PM
Updated: Nov 11, 2025, 7:27 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
4.0
remediation
7.7
relevance
1.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.