Lucene search

K
cve[email protected]CVE-2019-1000
HistoryMay 16, 2019 - 7:29 p.m.

CVE-2019-1000

2019-05-1619:29:05
CWE-269
web.nvd.nist.gov
103
cve-2019-1000
microsoft
azure
active directory
elevation of privilege
vulnerability
nvd

3.5 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.9%

An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two PowerShell cmdlets in context of a privileged account, and perform privileged actions.To exploit this, an attacker would need to authenticate to the AzureΓƒβ€šΓ‚ AD Connect server, aka β€˜Microsoft Azure AD Connect Elevation of Privilege Vulnerability’.

Affected configurations

Vulners
NVD
Node
microsoftazure_active_directory_connect
VendorProductVersionCPE
microsoftazure_active_directory_connect*cpe:2.3:a:microsoft:azure_active_directory_connect:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Microsoft Azure Active Directory Connect",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "unspecified"
      }
    ]
  }
]

3.5 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

5.3 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.9%