Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Raphael John

Researcher fromBertelsmann Printing Group
#33309of 56,330
8.1Total CVSS
Vulnerabilities · 1
PT-2022-2475
8.1
2022-05-10
Microsoft · Active Directory Certificate Services · CVE-2022-26925
**Name of the Vulnerable Software and Affected Versions** Windows LSA versions prior to the fixed version **Description** The issue is related to a spoofing vulnerability in the Windows LSA component, allowing attackers to bypass authentication mechanisms. This can enable a remote attacker to perform a "man-in-the-middle" attack by relaying NTLM to Active Directory Certificate Services (AD CS). The vulnerability is actively exploited. **Recommendations** For Windows LSA versions prior to the fixed version, update to the latest version to resolve the issue. As a temporary workaround, consider restricting access to domain controllers to minimize the risk of exploitation.