Remote Access Vulnerability in Microsoft Windows Products
CVE-2014-0317

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
12 March 2014

Summary

The Security Account Manager Remote (SAMR) protocol in several Microsoft Windows versions fails to accurately determine the user-lockout state. This shortcoming enables remote attackers to exploit the account lockout policy, facilitating unauthorized access through brute-force methods. This vulnerability poses significant risks as it allows an attacker to bypass essential security measures designed to protect user accounts.

References

EPSS Score

11% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.