CVE-2014-1812
Microsoft Windows Group Policy Preferences Password Privilege Escalation Vulnerability
⚠ KEVEPSS 65.1%
Description
Microsoft Windows Active Directory contains a privilege escalation vulnerability due to the way it distributes passwords that are configured using Group Policy preferences. An authenticated attacker who successfully exploits the vulnerability could decrypt the passwords and use them to elevate privileges on the domain.
How to fix CVE-2014-1812
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2014-1812 being exploited?
Yes — CVE-2014-1812 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.