緊急!利用工具已公開,Microsoft Windows Active Directory 域服務(wù)權(quán)限提升漏洞安全風(fēng)險(xiǎn)通告
發(fā)布時(shí)間 :2021年12月13日
類型 :勒索軟件
2021年12月12日,亞信安全 CERT監(jiān)測(cè)發(fā)現(xiàn) Microsoft Windows Active Directory 域服務(wù)權(quán)限提升漏洞(CVE-2021-42278、CVE-2021-42287)相關(guān)利用PoC在互聯(lián)網(wǎng)公開。攻擊者可利用該漏洞將域內(nèi)的普通用戶權(quán)限提升到域管理員權(quán)限,由此造成風(fēng)險(xiǎn)和危害極大。
鑒于目前微軟官方已提供修復(fù)補(bǔ)丁,亞信安全CERT建議用戶應(yīng)盡快更新補(bǔ)丁并采取相關(guān)措施。
【CVE-2021-42278】
Microsoft Windows Active Directory 域服務(wù)權(quán)限提升漏洞【CVE-2021-42287】
Microsoft Windows Active Directory 域服務(wù)權(quán)限提升漏洞
【CVE-2021-42278】
【CVE-2021-42287 】
CVSS 3.0 : 8.8分

CVE-2021-42278 受影響系統(tǒng)
- Windows Server 2012 R2
- Windows Server 2012 (Server Core installation)
- Windows Server 2012
- Windows Server 2008 R2 for x64-based Systems Service Pack 1(Server Core installation)
- Windows Server 2008 R2 for x64-based Systems Service Pack 1
- Windows Server 2008 for x64-based Systems Service Pack 2(Server Core installation)
- Windows Server 2008 for x64-based Systems Service Pack 2
- Windows Server 2008 for 32-bit Systems Service Pack 2(Server Core installation)
- Windows Server 2008 for 32-bit Systems Service Pack 2
- Windows Server 2016 (Server Core installation)
- Windows Server 2016
- Windows Server, version 20H2 (Server Core Installation)
Windows Server, version 2004 (Server Core installation)
Windows Server 2022 (Server Core installation)
Windows Server 2019 (Server Core installation)
Windows Server 2022
- Windows Server 2019
- Windows Server 2012 R2 (Server Core installation)
CVE-2021-42287 受影響系統(tǒng)
- Windows Server 2012 R2 (Server Core installation)
- Windows Server 2012 R2
- Windows Server 2012 (Server Core installation)
- Windows Server 2008 R2 for x64-based Systems Service Pack 1(Server Core installation)
- Windows Server 2012
- Windows Server 2008 R2 for x64-based Systems Service Pack 1
- Windows Server 2008 for x64-based Systems Service Pack 2(Server Core installation)
- Windows Server 2008 for x64-based Systems Service Pack 2
- Windows Server 2008 for 32-bit Systems Service Pack 2(Server Core installation)
- Windows Server 2008 for 32-bit Systems Service Pack 2
- Windows Server 2016 (Server Core installation)
- Windows Server 2016
- Windows Server, version 20H2 (Server Core Installation)
- Windows Server, version 2004 (Server Core installation)
- Windows Server 2022 (Server Core installation)
- Windows Server 2022
- Windows Server 2019 (Server Core installation)
- Windows Server 2019
1. 目前官方已提供修復(fù)補(bǔ)丁,建議使用Windows Update完成補(bǔ)丁更新工作;2. 對(duì)于無法使用Windows Update自動(dòng)更新的設(shè)備,可手動(dòng)下載相關(guān)補(bǔ)丁進(jìn)行更新,下載地址如下:
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42278
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42278