CVE-2011-0040
The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 22.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a crafted request that triggers name collisions, aka "Active Directory SPN Validation Vulnerability."
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 22.76% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- microsoft/windows 2003 server
- Source
- secure@microsoft.com
References
- http://osvdb.org/70825
- http://secunia.com/advisories/43215Vendor Advisory
- http://www.securityfocus.com/bid/46145
- http://www.securitytracker.com/id?1025042
- http://www.vupen.com/english/advisories/2011/0319Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-005
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64915
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12485
- http://osvdb.org/70825
- http://secunia.com/advisories/43215Vendor Advisory
- http://www.securityfocus.com/bid/46145
- http://www.securitytracker.com/id?1025042
- http://www.vupen.com/english/advisories/2011/0319Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-005
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64915
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12485
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.