Microsoft Windows NT LsaQueryInformationPolicy() Domain SID Leak Vulnerability (CVE-2000-1200)
Publish Date: 21 juillet 2015
Gravité: : Medium
Date du conseil: 21 juillet 2015
Description
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005448