← Back to browse · API

CVE-2014-1812

Severity
HIGH
CVSS
8.8
EPSS
0.65117
Risk score
82.99
CISA KEV
Yes
PoC
No
Published
2021-11-03
Modified
2021-11-03
First seen
2026-08-07
Aliases
EUVD-2014-1886, GHSA-CM2M-VV5G-HPC2
Products
Microsoft:Windows, n/a:n/a n/a
Sources
euvd EUVD-2014-1886
cisa.gov CVE-2014-1812

Description

Microsoft Windows Active Directory contains a privilege escalation vulnerability due to the way it distributes passwords that are configured using Group Policy preferences. An authenticated attacker who successfully exploits the vulnerability could decrypt the passwords and use them to elevate privileges on the domain.

References