ZeroHour

CVE-2019-1338

CVSS 3.1
5.9 medium
EPSS
4%p89
Published
()
Modified
Description

A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLMv2 protection if a client is also sending LMv2 responses, aka 'Windows NTLM Security Feature Bypass Vulnerability'.

Vendors
microsoft
Products
windows 7, windows server 2008
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news