ϺΛDИVTTΛH :fosstodon: · @madnuttah
185 followers · 1469 posts · Server fosstodon.org
iCyberFighter · @iCyberFighter
246 followers · 153 posts · Server infosec.exchange

[] [] [] Back in September 2022 a critical Microsoft vulnerability in the SPNEGO Extended Negotiation () Security Mechanism was disclosed.

Most recently, IBM X-Force Security Researcher, Valentina Palmiotti (@chompie), discovered that exploitation of this vulnerability could allow an attacker to remotely execute arbitrary code.

Due to that discovery, Microsoft has now classified this vulnerability as “Critical.” Test and patch ASAP. Original CVE: CVE-2022-37958 | cve.mitre.org/cgi-bin/cvename.

#vuln #spengo #PatchNOW #negoex

Last updated 3 years ago