Improper Authentication in Windows Server - CVE-2024-49019

 

Improper Authentication in Windows Server - CVE-2024-49019

Published: November 12, 2024


Vulnerability identifier: #VU100381
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-49019
CWE-ID: CWE-287
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to bypass authentication process.

The vulnerability exists due to an error when processing authentication requests in Active Directory Certificate Services. A local user can bypass authentication process and gain unauthorized access to the application.


Affected software

Windows Server

How to mitigate CVE-2024-49019

Install updates from vendor's website.

Windows Server - addressed in versions 2008 R2 6.1.7601.27415, 2008 6.0.6003.22966, 2012 R2 6.3.9600.22267, 2012 6.2.9200.25165, 2016 10.0.14393.7515, 2019 10.0.17763.6532, 2022 23H2 10.0.25398.1251, 2022 10.0.20348.2849, 2025 10.0.26100.2240, 2025 10.0.26100.2314

External References

Related Security Bulletins