CVE-2020-0837
EUVD-2020-230911.09.2020, 17:15
<p>An elevation of privilege vulnerability exists when Active Directory Federation Services (ADFS) improperly handles multi-factor authentication requests. An attacker who successfully exploited this vulnerability could bypass some, but not all, of the authentication factors.</p> <p>To exploit this vulnerability, an attacker could send a specially crafted authentication request.</p> <p>This security update corrects how ADFS handles multi-factor authentication requests.</p>Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | windows_server_2016 | - |
| microsoft | windows_server_2019 | - |
𝑥
= Vulnerable software versions
Windows Releases
Platform | Version | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| Windows 10 |
| ||||||||||
| Windows Server |
| ||||||||||
| Windows Server 2016 |
| ||||||||||
| Windows Server 2019 |
|