National Cyber Warfare Foundation (NCWF)

VMware Alert: Uninstall EAP Now - Critical Flaw Puts Active Directory at Risk


0 user ratings
2024-02-21 06:12:27
milo
Blue Team (CND) , Policy / Governance

 - archive -- 
VMware is urging users to uninstall the deprecated Enhanced Authentication Plugin (EAP) following the discovery of a critical security flaw.
Tracked as CVE-2024-22245 (CVSS score: 9.6), the vulnerability has been described as an arbitrary authentication relay bug.
"A malicious actor could trick a target domain user with EAP installed in their web browser into requesting and relaying



Source: TheHackerNews
Source Link: https://thehackernews.com/2024/02/vmware-alert-uninstall-eap-now-critical.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)
Policy / Governance



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.