Lucene search

K
msrcMicrosoft Security Response CenterMSRC:93A361B73FFA3EEFB6825C56F25103BB
HistoryOct 29, 2020 - 7:00 a.m.

Attacks exploiting Netlogon vulnerability (CVE-2020-1472)

2020-10-2907:00:00
Microsoft Security Response Center
link
54
netlogon
vulnerability
cve-2020-1472
exploitation
domain controller
security updates

EPSS

0.422

Percentile

97.4%

Microsoft has received a small number of reports from customers and others about continued activity exploiting a vulnerability affecting the Netlogon protocol (CVE-2020-1472) which was previously addressed in security updates starting on August 11, 2020. If the original guidance is not applied, the vulnerability could allow an attacker to spoof a domain controller account that could be used to steal domain credentials and take over the domain.