A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLM MIC (Message Integrity Check) protection. An attacker who successfully exploited this vulnerability could gain the ability to downgrade NTLM security features. To exploit this vulnerability, the attacker would need to tamper with the NTLM exchange. The attacker could then modify flags of the NTLM packet without invalidating the signature. The update addresses the vulnerability by hardening NTLM MIC protection on the server-side.
Existe una vulnerabilidad de manipulación indebida en Microsoft Windows cuando un atacante de tipo hombre en el medio (man-in-the-middle) puede omitir con éxito la protección NTLM MIC (Comprobación de integridad del mensaje), también se conoce como "Windows NTLM Tampering Vulnerability".
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N
| Attack Vector | NETWORK |
|---|---|
| Attack Complexity | HIGH |
| Privileges Required | NONE |
| User Interaction | REQUIRED |
| Scope | UNCHANGED |
| Confidentiality Impact | NONE |
| Integrity Impact | HIGH |
| Availability Impact | NONE |
AV:N/AC:M/Au:N/C:N/I:P/A:N
| Access Vector | NETWORK |
|---|---|
| Access Complexity | MEDIUM |
| Authentication | NONE |
| Confidentiality Impact | NONE |
| Integrity Impact | PARTIAL |
| Availability Impact | NONE |
| Source | Type | Description |
|---|---|---|
| [email protected] | Primary |
en
NVD-CWE-noinfo
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| microsoft | windows_10 | - | <built-in method update of dict object at 0x7e60eb225d40> | Operating System |
| microsoft | windows_10 | 1607 | <built-in method update of dict object at 0x7e60eb224340> | Operating System |
| microsoft | windows_10 | 1703 | <built-in method update of dict object at 0x7e6108407440> | Operating System |
| microsoft | windows_10 | 1709 | <built-in method update of dict object at 0x7e60eb224fc0> | Operating System |
| microsoft | windows_10 | 1803 | <built-in method update of dict object at 0x7e60eb224b40> | Operating System |
| microsoft | windows_10 | 1809 | <built-in method update of dict object at 0x7e60eb224f40> | Operating System |
| microsoft | windows_10 | 1903 | <built-in method update of dict object at 0x7e60eb225780> | Operating System |
| microsoft | windows_7 | - | <built-in method update of dict object at 0x7e60eb225c80> | Operating System |
| microsoft | windows_8.1 | - | <built-in method update of dict object at 0x7e60eb227e80> | Operating System |
| microsoft | windows_rt_8.1 | - | <built-in method update of dict object at 0x7e60eb224a00> | Operating System |
| microsoft | windows_server_2008 | - | <built-in method update of dict object at 0x7e60eb226fc0> | Operating System |
| microsoft | windows_server_2008 | r2 | <built-in method update of dict object at 0x7e6108407a40> | Operating System |
| microsoft | windows_server_2008 | r2 | <built-in method update of dict object at 0x7e60eb225140> | Operating System |
| microsoft | windows_server_2012 | - | <built-in method update of dict object at 0x7e60eb227c40> | Operating System |
| microsoft | windows_server_2012 | r2 | <built-in method update of dict object at 0x7e60eb224dc0> | Operating System |
| microsoft | windows_server_2016 | - | <built-in method update of dict object at 0x7e6108405ec0> | Operating System |
| microsoft | windows_server_2016 | 1803 | <built-in method update of dict object at 0x7e6108404b80> | Operating System |
| microsoft | windows_server_2016 | 1903 | <built-in method update of dict object at 0x7e6108407d80> | Operating System |
| microsoft | windows_server_2019 | - | <built-in method update of dict object at 0x7e60eb227280> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_10:1903:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:* |
| Yes | cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:* |