CVE-2016-3226: Medium severity microsoft windows server vulnerability
Published Jun 16, 2016
·Updated
Active Directory in Microsoft Windows Server 2008 R2 SP1 and Server 2012 Gold and R2 allows remote authenticated users to cause a denial of service (service hang) by creating many machine accounts, aka "Active Directory Denial of Service Vulnerability."
Affected Software
5 affected components
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012=gold
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2012=r2
Event History
Jun 16, 2016
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-3226?
CVE-2016-3226 is classified as a denial of service vulnerability.
2
How do I fix CVE-2016-3226?
To mitigate CVE-2016-3226, ensure that you apply the relevant security updates provided by Microsoft.
3
Who is affected by CVE-2016-3226?
CVE-2016-3226 affects remote authenticated users on Microsoft Windows Server 2008 R2 SP1 and Windows Server 2012.
4
What can an attacker achieve with CVE-2016-3226?
An attacker can cause a denial of service by creating a large number of machine accounts on the affected servers.
5
Is CVE-2016-3226 easy to exploit?
Yes, CVE-2016-3226 can be exploited by authenticated users with minimal skill.