Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-21316: Windows Server Key Distribution Service Security Feature Bypass

How can an attacker successfully exploit this vulnerability?

This vulnerability can be exploited when an attacker with admin privileges creates an x509 certificate with an MD5 property, which causes certificate validation to fail with no further validation checks.

Microsoft Security Response Center
#vulnerability#windows#Windows Server Key Distribution Service#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-21380: Azure Marketplace SaaS Resources Information Disclosure Vulnerability