CVE-2020-17049 (CNNVD-202011-784)
中文标题:
Microsoft Windows Key Distribution Center 权限许可和访问控制问题漏洞
英文标题:
Kerberos KDC Security Feature Bypass Vulnerability
漏洞描述
中文描述:
Microsoft Windows Key Distribution Center是美国微软(Microsoft)公司的一个进程,提供身份验证服务和出票服务。 Microsoft Windows Key Distribution Center 存在权限许可和访问控制问题漏洞。以下产品及版本受到影响:Windows Server, version 20H2 (Server Core Installation),Windows Server 2012 R2 (Server Core installation),Windows Server 2012 R2 (Server Core installation),Windows Server 2012 R2,Windows Server 2012 R2,Windows Server 2012 (Server Core installation),Windows Server 2012 (Server Core installation),Windows Server 2012,Windows Server 2012,Windows Server 2016 (Server Core installation),Windows Server 2016,Windows Server, version 2004 (Server Core installation),Windows Server, version 1903 (Server Core installation),Windows Server, version 1909 (Server Core installation),Windows Server 2019 (Server Core installation),Windows Server 2019。
英文描述:
NOT_EXTRACTED
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| Microsoft | Windows Server 2019 | 10.0.17763.2061 | < 10.0.17763.2061 | - |
cpe:2.3:o:microsoft:windows_server_2019:10.0.17763.2061:*:*:*:*:*:*:*
|
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.2061 | < 10.0.17763.2061 | - |
cpe:2.3:o:microsoft:windows_server_2019:10.0.17763.2061:*:*:*:*:*:*:*
|
| Microsoft | Windows Server, version 1909 (Server Core installation) | - | < publication | - |
cpe:2.3:o:microsoft:windows_server_1909:*:*:*:*:*:*:*:*
|
| Microsoft | Windows Server, version 1903 (Server Core installation) | - | < publication | - |
cpe:2.3:o:microsoft:windows_server_1903:*:*:*:*:*:*:*:*
|
| Microsoft | Windows Server version 2004 | 10.0.19041.1110 | < 10.0.19041.1110 | - |
cpe:2.3:o:microsoft:windows_server_2004:10.0.19041.1110:*:*:*:*:*:*:*
|
| Microsoft | Windows Server 2016 | 10.0.14393.4530 | < 10.0.14393.4530 | - |
cpe:2.3:o:microsoft:windows_server_2016:10.0.14393.4530:*:*:*:*:*:*:*
|
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.4530 | < 10.0.14393.4530 | - |
cpe:2.3:o:microsoft:windows_server_2016:10.0.14393.4530:*:*:*:*:*:*:*
|
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.21167 | < 6.0.6003.21167 | - |
cpe:2.3:o:microsoft:windows_server_2008_sp2:6.0.6003.21167:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2008 Service Pack 2 (Server Core installation) | 6.0.6003.21167 | < 6.0.6003.21167 | - |
cpe:2.3:o:microsoft:windows_server_2008_sp2:6.0.6003.21167:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.21167 | < 6.0.6003.21167 | - |
cpe:2.3:o:microsoft:windows_server_2008_sp2:6.0.6003.21167:*:*:*:*:*:x86:*
|
| Microsoft | Windows Server 2008 R2 Service Pack 1 | 6.1.7601.25661 | < 6.1.7601.25661 | - |
cpe:2.3:o:microsoft:windows_server_2008_R2:6.1.7601.25661:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.25661 | < 6.1.7601.25661 | - |
cpe:2.3:o:microsoft:windows_server_2008_R2:6.1.7601.25661:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2012 | 6.2.9200.23409 | < 6.2.9200.23409 | - |
cpe:2.3:o:microsoft:windows_server_2012:6.2.9200.23409:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.23409 | < 6.2.9200.23409 | - |
cpe:2.3:o:microsoft:windows_server_2012:6.2.9200.23409:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2012 R2 | 6.3.9600.20069 | < 6.3.9600.20069 | - |
cpe:2.3:o:microsoft:windows_server_2012_R2:6.3.9600.20069:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.20069 | < 6.3.9600.20069 | - |
cpe:2.3:o:microsoft:windows_server_2012_R2:6.3.9600.20069:*:*:*:*:*:x64:*
|
| Microsoft | Windows Server version 20H2 | 10.0.19041.1110 | < 10.0.19041.1110 | - |
cpe:2.3:o:microsoft:windows_server_20H2:10.0.19041.1110:*:*:*:*:*:*:*
|
| microsoft | windows_server_2012 | * | - | - |
cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*:*
|
| microsoft | windows_server_2012 | r2 | - | - |
cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
|
| microsoft | windows_server_2016 | - | - | - |
cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
|
| microsoft | windows_server_2016 | 20h2 | - | - |
cpe:2.3:o:microsoft:windows_server_2016:20h2:*:*:*:*:*:*:*
|
| microsoft | windows_server_2016 | 1903 | - | - |
cpe:2.3:o:microsoft:windows_server_2016:1903:*:*:*:*:*:*:*
|
| microsoft | windows_server_2016 | 1909 | - | - |
cpe:2.3:o:microsoft:windows_server_2016:1909:*:*:*:*:*:*:*
|
| microsoft | windows_server_2016 | 2004 | - | - |
cpe:2.3:o:microsoft:windows_server_2016:2004:*:*:*:*:*:*:*
|
| microsoft | windows_server_2019 | - | - | - |
cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
|
| samba | samba | * | - | - |
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
CVSS评分详情
3.1 (cna)
MEDIUMCVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2020-17049 |
2025-11-11 15:20:26 | 2025-11-11 07:36:07 |
| NVD | nvd_CVE-2020-17049 |
2025-11-11 14:57:05 | 2025-11-11 07:44:34 |
| CNNVD | cnnvd_CNNVD-202011-784 |
2025-11-11 15:10:31 | 2025-11-11 07:56:31 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 权限许可和访问控制问题
- cnnvd_id: 未提取 -> CNNVD-202011-784
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- affected_products_count: 17 -> 26
- data_sources: ['cve'] -> ['cve', 'nvd']