CISA Known Exploited Vulnerability

CVE-2014-6324

Microsoft · Kerberos Key Distribution Center (KDC)

Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-264
Ransomware Unknown

CISA description

The Kerberos Key Distribution Center (KDC) in Microsoft allows remote authenticated domain users to obtain domain administrator privileges.

Required action

Apply updates per vendor instructions.