CVE-2016-3226Improper Access Control in Microsoft Windows Server 2008

Severity
6.5MEDIUMNVD
EPSS
13.4%
top 5.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 16
Latest updateMay 14

Description

Active Directory in Microsoft Windows Server 2008 R2 SP1 and Server 2012 Gold and R2 allows remote authenticated users to cause a denial of service (service hang) by creating many machine accounts, aka "Active Directory Denial of Service Vulnerability."

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

🔴Vulnerability Details

1
GHSA
GHSA-x67x-54j5-hmqx: Active Directory in Microsoft Windows Server 2008 R2 SP1 and Server 2012 Gold and R2 allows remote authenticated users to cause a denial of service (s2022-05-14

📋Vendor Advisories

1
Microsoft
Active Directory Denial of Service Vulnerability2016-06-14

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday - June 20162016-06-14
Talos
Microsoft Patch Tuesday - June 20162016-06-14