Microsoft Windows NT LsaQueryInformationPolicy() Domain SID Leak Vulnerability (CVE-2000-1200)
Publish Date: 21 Juli 2015
Schweregrad:: Mittel
Hinweisdatum: 21 Juli 2015
Beschreibung
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.
Trend Micro Lösungen
Apply associated Trend Micro DPI Rules.
Lösungen
Trend Micro Deep Security DPI Rule Number: 1005448