Vulnerability in NETLOGON could allow spoofing - MS15-027ID: oval:org.secpod.oval:def:23740 | Date: (C)2015-03-11 (M)2023-12-07 |
Class: PATCH | Family: windows |
The host is missing an important security update according to Microsoft security bulletin, MS15-027. The update is required to fix a spoofing vulnerability. A flaw is present in the application, which fails to properly establish a secure communications channel. Successful exploitation could allow attackers to to use the established secure channel to obtain session-related information for the actual secure channel of the spoofed computer.
Platform: |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |