Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-36942

Windows LSA Spoofing Vulnerability
Exploit prediction scoring system (EPSS) score
EPSS Score 0.935
EPSS Ranking 99.8%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Proposed Action
Microsoft Windows Local Security Authority (LSA) contains a spoofing vulnerability allowing an unauthenticated attacker to call a method on the LSARPC interface and coerce the domain controller to authenticate against another server using NTLM.
Ransomware Campaign
Known
Products affected by CVE-2021-36942


Contact Us

Shodan ® - All rights reserved