Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypass intended access restrictions.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2008-08-13 00:41
Updated : 2024-02-04 17:33
NVD link : CVE-2008-2246
Mitre link : CVE-2008-2246
CVE.ORG link : CVE-2008-2246
JSON object : View
Products Affected
microsoft
- windows_vista
- windows-nt
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor