Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.826613
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Windows Multiple Vulnerabilities (KB5020000)
Zusammenfassung:This host is missing a critical security; update according to Microsoft KB5020000
Beschreibung:Summary:
This host is missing a critical security
update according to Microsoft KB5020000

Vulnerability Insight:
Multiple flaws exist due to:

- Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability.

- An elevation of privilege vulnerability in Windows Kerberos RC4-HMAC.

- Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability.

For more information about the vulnerabilities refer to Reference links.

Vulnerability Impact:
Successful exploitation will allow an attacker
to disclose sensitive information, perform remote code execution, cause
denial of service condition and elevate privileges.

Affected Software/OS:
- Microsoft Windows Server 2008 R2 for x64-based Systems Service Pack 1

- Microsoft Windows 7 for x64-based Systems Service Pack 1

- Microsoft Windows 7 for 32-bit Systems Service Pack 1

Solution:
The vendor has released updates. Please see
the references for more information.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2022-23824
https://security.gentoo.org/glsa/202402-07
DSA-5378
https://www.debian.org/security/2023/dsa-5378
FEDORA-2022-53a4a5dd11
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NTQMPJC5N6XJYQ232OZFLK47HVZNRBY3/
FEDORA-2022-9f51d13fa3
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YTMITQBGC23MSDHUCAPCVGLMVXIBXQTQ/
[oss-security] 20221110 Xen Security Advisory 422 v2 (CVE-2022-23824) - x86: Multiple speculative security issues
http://www.openwall.com/lists/oss-security/2022/11/10/2
https://www.amd.com/en/corporate/product-security/bulletin/amd-sb-1040
Common Vulnerability Exposure (CVE) ID: CVE-2022-37966
Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37966
https://security.gentoo.org/glsa/202309-06
Common Vulnerability Exposure (CVE) ID: CVE-2022-37967
Windows Kerberos Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37967
Common Vulnerability Exposure (CVE) ID: CVE-2022-37992
Windows Group Policy Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37992
Common Vulnerability Exposure (CVE) ID: CVE-2022-38023
Netlogon RPC Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38023
Common Vulnerability Exposure (CVE) ID: CVE-2022-41039
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41039
Common Vulnerability Exposure (CVE) ID: CVE-2022-41044
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41044
Common Vulnerability Exposure (CVE) ID: CVE-2022-41045
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41045
Common Vulnerability Exposure (CVE) ID: CVE-2022-41047
Microsoft ODBC Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41047
Common Vulnerability Exposure (CVE) ID: CVE-2022-41048
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41048
Common Vulnerability Exposure (CVE) ID: CVE-2022-41053
Windows Kerberos Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41053
Common Vulnerability Exposure (CVE) ID: CVE-2022-41056
Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41056
Common Vulnerability Exposure (CVE) ID: CVE-2022-41057
Windows HTTP.sys Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41057
Common Vulnerability Exposure (CVE) ID: CVE-2022-41058
Windows Network Address Translation (NAT) Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41058
Common Vulnerability Exposure (CVE) ID: CVE-2022-41073
Windows Print Spooler Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41073
http://packetstormsecurity.com/files/174528/Microsoft-Windows-Privilege-Escalation.html
Common Vulnerability Exposure (CVE) ID: CVE-2022-41086
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41086
Common Vulnerability Exposure (CVE) ID: CVE-2022-41090
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41090
Common Vulnerability Exposure (CVE) ID: CVE-2022-41095
Windows Digital Media Receiver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41095
Common Vulnerability Exposure (CVE) ID: CVE-2022-41097
Network Policy Server (NPS) RADIUS Protocol Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41097
Common Vulnerability Exposure (CVE) ID: CVE-2022-41098
Windows GDI+ Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41098
Common Vulnerability Exposure (CVE) ID: CVE-2022-41109
Windows Win32k Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41109
Common Vulnerability Exposure (CVE) ID: CVE-2022-41116
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41116
Common Vulnerability Exposure (CVE) ID: CVE-2022-41118
Windows Scripting Languages Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41118
Common Vulnerability Exposure (CVE) ID: CVE-2022-41128
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41128
CopyrightCopyright (C) 2022 Greenbone Networks GmbH

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.