Lucene search

K
cisaCISACISA:433F588AAEF2DF2A0B46FE60687F19E0
HistorySep 14, 2020 - 12:00 a.m.

Exploit for Netlogon Remote Protocol Vulnerability, CVE-2020-1472

2020-09-1400:00:00
us-cert.cisa.gov
63

0.467 Medium

EPSS

Percentile

97.5%

The Cybersecurity and Infrastructure Security Agency (CISA) is aware of publicly available exploit code for CVE-2020-1472, an elevation of privilege vulnerability in Microsoft’s Netlogon. Although Microsoft provided patches for CVE-2020-1472 in August 2020, unpatched systems will be an attractive target for malicious actors. Attackers could exploit this vulnerability to obtain domain administrator access.

CISA encourages users and administrators to review Microsoft’s August Security Advisory for [CVE-2020-1472](<https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1472 >) and Article for more information and apply the necessary updates.

This product is provided subject to this Notification and this Privacy & Use policy.

Please share your thoughts.

We recently updated our anonymous product survey; we’d welcome your feedback.