關於Microsoft Windows Active Directory 域服務權限提升漏洞風險提示

發布時間:2021-12-14瀏覽次數:418

1.1漏洞描述

攻擊者利用該漏洞可以在域內將普通的用戶權限提升到管理員的權限。

1👊🏿、CVE-2021-42287

該漏洞是由於AD沒有對域內機器賬戶名做驗證,導致繞過安全限製👩🏼‍🏭。經過遠程身份驗證的攻擊者可以結合CVE-2021-42278將域內普通用戶權限提升到域管理員權限👨‍🎤🧙🏼‍♀️。

2CVE-2021-42278

該漏洞則是由於應用程序沒有對 Active Directory 域服務進行適當的安全限製。結合CVE-2021-42287可以導致繞過安全限製和權限提升🙋🏻🧎‍♂️‍➡️。

1.2漏洞編號

CVE-2021-42287

CVE-2021-42278

1.3漏洞等級

高危

2. 修復建議

2.1 受影響版本

CVE-2021-42287:

Windows Server 2012 R2 (Server Core installation)

Windows Server 2012 R2

Windows Server 2012 (Server Core installation)

Windows Server 2008 R2 for x64-based Systems Service Pack 1(Server Core installation)

Windows Server 2012

Windows Server 2008 R2 for x64-based Systems Service Pack 1

Windows Server 2008 for x64-based Systems Service Pack 2(Server Core installation)

Windows Server 2008 for x64-based Systems Service Pack 2

Windows Server 2008 for 32-bit Systems Service Pack 2(Server Core installation)

Windows Server 2008 for 32-bit Systems Service Pack 2

Windows Server 2016 (Server Core installation)

Windows Server 2016

Windows Server, version 20H2 (Server Core Installation)

Windows Server, version 2004 (Server Core installation)

Windows Server 2022 (Server Core installation)

Windows Server 2022

Windows Server 2019 (Server Core installation)

Windows Server 2019

CVE-2021-42278:

Windows Server 2012 R2

Windows Server 2012 (Server Core installation)

Windows Server 2012

Windows Server 2008 R2 for x64-based Systems Service Pack 1(Server Core installation)

Windows Server 2008 R2 for x64-based Systems Service Pack 1

Windows Server 2008 for x64-based Systems Service Pack 2(Server Core installation)

Windows Server 2008 for x64-based Systems Service Pack 2

Windows Server 2008 for 32-bit Systems Service Pack 2(Server Core installation)

Windows Server 2008 for 32-bit Systems Service Pack 2

Windows Server 2016 (Server Core installation)

Windows Server 2016

Windows Server, version 20H2 (Server Core Installation)

Windows Server, version 2004 (Server Core installation)

Windows Server 2022 (Server Core installation)

Windows Server 2019 (Server Core installation)

Windows Server 2022

Windows Server 2019

Windows Server 2012 R2 (Server Core installation)

2.2 修復建議

目前官方已發布最新版本並修復了以上漏洞,請受影響的用戶盡快升級版本進行防護✢:

1.更新Windows系統到最新版;

2.使用官方補丁🕍:

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42278

耀世平台专业提供:耀世平台耀世耀世注册等服务,提供最新官网平台、地址、注册、登陆、登录、入口、全站、网站、网页、网址、娱乐、手机版、app、下载、欧洲杯、欧冠、nba、世界杯、英超等,界面美观优质完美,安全稳定,服务一流🤏🏻,耀世平台欢迎您。 耀世平台官網xml地圖