Lucene search

K
cvelistMicrosoftCVELIST:CVE-2016-3237
HistoryAug 09, 2016 - 9:00 p.m.

CVE-2016-3237

2016-08-0921:00:00
microsoft
www.cve.org
1

7.5 High

AI Score

Confidence

High

0.095 Low

EPSS

Percentile

94.8%

Kerberos in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows man-in-the-middle attackers to bypass authentication via vectors related to a fallback to NTLM authentication during a domain account password change, aka “Kerberos Security Feature Bypass Vulnerability.”

7.5 High

AI Score

Confidence

High

0.095 Low

EPSS

Percentile

94.8%