CVE-2015-0005

Microsoft Windows Server 2003 SP2, 2008 SP2/R2 SP1, 2012/2012 R2 - NETLOGON Spoofing via Computer Name Spoofing

Title source: llm
STIX 2.1

Description

The NETLOGON service in Microsoft Windows Server 2003 SP2, Windows Server 2008 SP2 and R2 SP1, and Windows Server 2012 Gold and R2, when a Domain Controller is configured, allows remote attackers to spoof the computer name of a secure channel's endpoint, and obtain sensitive session information, by running a crafted application and leveraging the ability to sniff network traffic, aka "NETLOGON Spoofing Vulnerability."

Scores

EPSS 0.1817
EPSS Percentile 96.9%

Details

CWE
CWE-254
Status published
Products (5)
microsoft/windows_2003_server
microsoft/windows_server_2008
microsoft/windows_server_2008 r2 sp1
microsoft/windows_server_2012
microsoft/windows_server_2012 r2 (3 CPE variants)
Published Mar 11, 2015
Tracked Since Feb 18, 2026