CVE Database
/

CVE-2019-1338

Back to search

CVE-2019-1338

Published: Oct 10, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLMv2 protection if a client is also sending LMv2 responses, aka 'Windows NTLM Security Feature Bypass Vulnerability'.

VendorProductVersions

Microsoft

Windows

affected
7 for 32-bit Systems Service Pack 1
affected
7 for x64-based Systems Service Pack 1

Microsoft

Windows Server

affected
2008 R2 for x64-based Systems Service Pack 1 (Core installation)
affected
2008 R2 for Itanium-Based Systems Service Pack 1
affected
2008 R2 for x64-based Systems Service Pack 1
affected
2008 for 32-bit Systems Service Pack 2 (Core installation)
affected
2008 for Itanium-Based Systems Service Pack 2

+3 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now