Loading HuntDB...

Microsoft Netlogon Privilege Escalation Vulnerability

Added Nov. 3, 2021 Due Sept. 21, 2020 CVE-2020-1472
Overdue Microsoft / Netlogon Known Ransomware Use CWE-330

Description

Microsoft's Netlogon Remote Protocol (MS-NRPC) contains a privilege escalation vulnerability when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller. An attacker who successfully exploits the vulnerability could run a specially crafted application on a device on the network. The vulnerability is also known under the moniker of Zerologon.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 1 week ago