The security update addresses the vulnerability by correcting how Credential Security Support Provider protocol (CredSSP) validates requests during the authentication process.Īn update released by Microsoft ( KB 4093492)on May 8, 2018, for Windows 10 Operation System was targeted to change the default settings CredSSP from Vulnerable to Mitigated.Ī full list of the update and patches for all platform can be obtained from here. An attacker could then install programs view, change, or delete data or create new accounts with full user rights. An attacker who successfully exploited this vulnerability could relay user credentials and use them to execute code on the target system.ĬredSSP is an authentication provider which processes authentication requests for other applications any application which depends on CredSSP for authentication may be vulnerable to this type of attack.Īs an example of how an attacker could exploit this vulnerability against Remote Desktop Protocol, the attacker would need to run a specially crafted application and perform a man-in-the-middle attack against a Remote Desktop Protocol session. Information Protection and Compliance (17)Ī remote code execution vulnerability exists in the Credential Security Support Provider protocol (CredSSP).SharePoint On-Prem to SharePoint Online Migration (6).Microsoft 365 Tenant-to-Tenant Migration (4).Google Workspace to Microsoft 365 Migration (8).
0 Comments
Leave a Reply. |