CVE-2008-2246

Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypass intended access restrictions.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows-nt:2008:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_vista:-:sp1:*:*:*:*:*:*

History

No history.

Information

Published : 2008-08-13 00:41

Updated : 2024-02-04 17:33


NVD link : CVE-2008-2246

Mitre link : CVE-2008-2246

CVE.ORG link : CVE-2008-2246


JSON object : View

Products Affected

microsoft

  • windows_vista
  • windows-nt
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor