8
CVE-2026-27912
- EPSS 0.57%
- Veröffentlicht 14.04.2026 16:58:07
- Zuletzt bearbeitet 23.04.2026 14:56:13
- Quelle secure@microsoft.com
- CVE-Watchlists
- Unerledigt
Windows Kerberos Elevation of Privilege Vulnerability
Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows Server 2012 Version-
Microsoft ≫ Windows Server 2012 Versionr2
Microsoft ≫ Windows Server 2016 Version < 10.0.14393.9060
Microsoft ≫ Windows Server 2019 Version < 10.0.17763.8644
Microsoft ≫ Windows Server 2022 Version < 10.0.20348.5020
Microsoft ≫ Windows Server 2022 23h2 Version < 10.0.25398.2274
Microsoft ≫ Windows Server 2025 Version < 10.0.26100.32690
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.57% | 0.687 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| secure@microsoft.com | 8 | 2.1 | 5.9 |
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-285 Improper Authorization
The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.