Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Kees Van Vloten

#31241of 56,330
8.8Total CVSS
Vulnerabilities · 1
PT-2022-1496
8.8
2022-01-31
Samba · Samba Ad Dc · CVE-2022-0336
**Name of the Vulnerable Software and Affected Versions** Samba AD DC (affected versions not specified) **Description** The issue is related to checks when adding service principals names (SPNs) to an account, which can be bypassed under certain conditions. This can allow an attacker who has the ability to write to an account to perform a denial-of-service attack by adding an SPN that matches an existing service. Additionally, an attacker who can intercept traffic can impersonate existing services, resulting in a loss of confidentiality and integrity. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.