Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Jul 22, 2022

High
CISA KEV

CVE-2022-26925

MicrosoftWindows

Microsoft Windows Local Security Authority (LSA) contains a spoofing vulnerability where an attacker can coerce the domain controller to authenticate to the attacker using NTLM.

Required Action

WARNING: This update is required on all Microsoft Windows endpoints but if deployed to domain controllers without additional configuration changes the update breaks PIV/CAC authentication. Read CISA implementation guidance carefully before deploying to domain controllers.; https://nvd.nist.gov/vuln/detail/CVE-2022-26925

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Jul 1, 2022
KEV Added
Jul 1, 2022
Due Date
Jul 22, 2022
Related Articles
0

Vendor

Microsoft

Windows