CVE-2016-3237
HIGHMicrosoft Windows Kerberos - Authentication Bypass via NTLM Fallback
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-3237. PoCs published by Nabeel Ahmed.
AI-analyzed exploit summary This is a detailed technical writeup describing a Kerberos to NTLM fallback vulnerability (CVE-2016-3237) that allows local privilege escalation by manipulating firewall rules and password changes. It outlines a step-by-step attack path but does not include functional exploit code.
Description
Kerberos in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows man-in-the-middle attackers to bypass authentication via vectors related to a fallback to NTLM authentication during a domain account password change, aka "Kerberos Security Feature Bypass Vulnerability."
Exploits (1)
This is a detailed technical writeup describing a Kerberos to NTLM fallback vulnerability (CVE-2016-3237) that allows local privilege escalation by manipulating firewall rules and password changes. It outlines a step-by-step attack path but does not include functional exploit code.
References (4)
Scores
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H