Executive brief
Microsoft Active Directory Domain Services contains an elevation of privilege vulnerability that allows an authenticated attacker to escalate their privileges. The flaw is related to how the service handles authentication requests, potentially allowing a regular user to gain domain administrator rights. This vulnerability has been observed being exploited in the wild.
Affected products
- Microsoft Windows Server 2008 Service Pack 2, R2 Service Pack 1
- Microsoft Windows Server 2012 R2
- Microsoft Windows Server 2016 up to (excluding) 10.0.14393.4770, version 2004
- Microsoft Windows Server 2019 up to (excluding) 10.0.17763.2300
- Microsoft Windows Server 2022 up to (excluding) 10.0.20348.350
Timeline
- 2021-11-09: disclosed: NVD Published Date
- 2022-04-11: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2022-05-02: other: CISA Due Date for remediation