CVE-2014-6324
The Kerberos Key Distribution Center (KDC) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote authenticated domain users to obtain domain administrator privileges via a forged signature in a ticket, as exploited in the wild in November 2014, aka "Kerberos Checksum Vulnerability."
- Affected products
- Windows 7, Windows 8, Windows 8.1, Windows Server 2003, Windows Server 2008, Windows Server 2012, Windows Vista, Windows
- Microsoft Windows 7
- All versions
- Microsoft Windows 8
- All versions
- Microsoft Windows 8.1
- All versions
- Microsoft Windows Server 2003
- All versions
- Microsoft Windows Server 2008
- All versions
- Microsoft Windows Server 2012
- All versions
- Fix
- Available
- CVSS 2.0
- 9.0 HIGH
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 87.4% (100th percentile)
- NVD status
- Analyzed
- Published
- 2014-11-18
CVE-2014-6324 at NVD
9 known exploits for CVE-2014-6324
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for CVE-2014-6324
Kerberos 5-1.21.3 Privilege Escalation / Ticket Injection
MS14-068 Microsoft Kerberos Checksum Validation
ESKIMOROLL-ms14-068 Windows vulnerability in the Key Distribution Center (KDC) service (CVE-2014-6324)
HackBack - A DIY Guide
Windows Kerberos - Elevation of Privilege (MS14-068) Exploit
Microsoft Windows Kerberos - Privilege Escalation (MS14-068)
Immunity Canvas: MS14_068
MS14-068 Microsoft Kerberos Checksum Validation Vulnerability