V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2024-22245Critical

Arbitrary Authentication Relay and Session Hijack vulnerabilities in the deprecated VMware Enhanced Authentication Plug-in (EAP) could allo…

CVSS
9.6
Critical
EPSS
0.01
p75
Published
2024-01-01
Updated
2024-01-01
Description

Arbitrary Authentication Relay and Session Hijack vulnerabilities in the deprecated VMware Enhanced Authentication Plug-in (EAP) could allow a malicious actor that could trick a target domain user with EAP installed in their web browser into requesting and relaying service tickets for arbitrary Active Directory Service Principal Names (SPNs).

Tags · CWE
Pre-auth
CWE-287
CWE-294
CAPEC-22
CAPEC-57
CAPEC-60
CAPEC-94
CAPEC-102
CAPEC-114
CAPEC-115
CAPEC-151
CAPEC-194
CAPEC-509
CAPEC-555
CAPEC-561
CAPEC-593
CAPEC-633
CAPEC-644
CAPEC-645
CAPEC-650
CAPEC-652
CAPEC-701
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Timeline
2024-01-01
Published
2024-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: R
Required (R)
Scope
S: C
Changed (C)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.009 · p75
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-555 · CWE-294
└ via CAPEC-561 · CWE-294
└ via CAPEC-57 · CWE-287
└ via CAPEC-555 · CWE-294
└ via CAPEC-555 · CWE-294
└ via CAPEC-633 · CWE-287
└ via CAPEC-60 · CWE-294
└ via CAPEC-593 · CWE-287
└ via CAPEC-650 · CWE-287
└ via CAPEC-114 · CWE-287
└ via CAPEC-593 · CWE-287
└ via CAPEC-644 · CWE-294
└ via CAPEC-645 · CWE-294
└ via CAPEC-60 · CWE-294
└ via CAPEC-94 · CWE-287
└ via CAPEC-652 · CWE-294
└ via CAPEC-509 · CWE-294
└ via CAPEC-593 · CWE-287
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
No vulnerabilities match your filters.
Related vulnerabilities