Lucene search

K
nvd[email protected]NVD:CVE-2024-20692
HistoryJan 09, 2024 - 6:15 p.m.

CVE-2024-20692

2024-01-0918:15:52
CWE-326
CWE-668
web.nvd.nist.gov
1
cve-2024-20692
microsoft
information disclosure
vulnerability
lsa
security

5.7 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.8%

Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability

Affected configurations

NVD
Node
microsoftwindows_10_1507Range<10.0.10240.20402
OR
microsoftwindows_10_1607Range<10.0.14393.6614
OR
microsoftwindows_10_1809Range<10.0.17763.5329
OR
microsoftwindows_10_21h2Range<10.0.19044.3930
OR
microsoftwindows_10_22h2Range<10.0.19045.3930
OR
microsoftwindows_11_21h2Range<10.0.22000.2713
OR
microsoftwindows_11_22h2Range<10.0.22621.3007
OR
microsoftwindows_11_23h2Range<10.0.22631.3007
OR
microsoftwindows_server_2008Match-sp2x64
OR
microsoftwindows_server_2008Match-sp2x86
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Range<10.0.14393.6614
OR
microsoftwindows_server_2019Range<10.0.17763.5329
OR
microsoftwindows_server_2022Range<10.0.20348.2227
OR
microsoftwindows_server_2022_23h2Range<10.0.25398.643

5.7 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.8%