CVE ID | |
CVSS SCORE | 9.8, AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
AFFECTED VENDORS |
Lepide |
AFFECTED PRODUCTS |
Active Directory Self Service |
VULNERABILITY DETAILS |
This vulnerability allows physical or remote attackers to bypass the Windows login screen on affected installations of Lepide Active Directory Self Service. Authentication is not required to exploit this vulnerability. The specific flaw exists within the "Reset Password / Unlock Account" feature. By interacting with this feature, an attacker can launch a highly-privileged web browser. An attacker can leverage this vulnerability to bypass the Windows login screen and execute code in the context of SYSTEM. |
ADDITIONAL DETAILS |
This vulnerability is being disclosed publicly without a patch in accordance with the ZDI 120 day deadline. 09/16/20 – ZDI reported the vulnerability to the vendor -- Mitigation: |
DISCLOSURE TIMELINE |
|
CREDIT | Antoine Cervoise & Quentin Rouves both from NTT. |