cve/2020/CVE-2020-25719.md
2024-05-25 21:48:12 +02:00

794 B

CVE-2020-25719

Description

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

POC

Reference

No PoCs from references.

Github