Windows Server 2012 0-Day-Schwachstelle ermöglicht Angreifern die Umgehung von Sicherheitsprüfungen

Teilen:

A critical security vulnerability in Windows Server 2012 and Server 2012 R2 has been uncovered, allowing attackers to bypass essential security checks enforced by the Mark of the Web (MotW) feature.

This zero-day flaw, which has remained undetected for over two years, poses a significant threat to organizations still relying on these server versions, even those with fully updated systems and Extended Security Updates.

The newly discovered vulnerability affects certain types of files, potentially exposing servers to malicious attacks. While specific details are being withheld to prevent exploitation, the flaw’s longevity and its presence in fully patched systems underscore the critical nature of this security issue.

0patch security researchers identified the vulnerability and promptly reported it to Microsoft. In the interim, they have developed micropatches to address the issue, which will remain free until Microsoft releases an official fix.

Nutzung der 2024 MITRE ATT&CK-Ergebnisse für KMU- und MSP-Cybersicherheitsverantwortliche - Teilnahme am kostenlosen Webinar

This proactive approach aims to protect affected systems while awaiting a permanent solution from the software giant.

Affected Systems

The vulnerability impacts:

  • Windows Server 2012 (updated to October 2023)
  • Windows Server 2012 R2 (updated to October 2023)
  • Windows Server 2012 with Extended Security Updates
  • Windows Server 2012 R2 with Extended Security Updates

Micropatch Availability

To mitigate the risk, free micropatches have been made available for affected systems. These patches have been distributed to online computers with the 0patch Agent installed on PRO or Enterprise accounts, providing immediate protection against potential exploits.

This discovery highlights the ongoing security challenges faced by organizations using older Windows Server versions. It serves as a stark reminder of the importance of regular security audits and the need for robust patch management strategies.

Security experts recommend that organizations still relying on Windows Server 2012 and 2012 R2:

  1. Apply the available micropatches immediately
  2. Monitor for any official updates from Microsoft
  3. Consider upgrading to more recent, fully supported server versions
  4. Implement additional security measures to protect critical systems

The emergence of this zero-day vulnerability underscores the constant evolution of cyber threats. It demonstrates that even systems believed to be fully updated can have critical security flaws.

As the cybersecurity community awaits Microsoft’s official fix, this vulnerability highlights the crucial role of independent security researchers and third-party patch providers in maintaining the integrity of widely used software systems.

Quelle

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
5:04 am, Juni 16, 2025
Wetter-Symbol 14°C
L: 12° | H: 15°
klarer Himmel
Luftfeuchtigkeit: 87 %
Druck: 1027 mb
Wind: 3 mph WNW
Windböe: 4 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 2%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 4:42 am
Sonnenuntergang: 9:19 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
12° | 15°°C 0 mm 0% 9 mph 84 % 1028 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
16° | 26°°C 0 mm 0% 10 mph 78 % 1027 mb 0 mm/h
Mi. Juni 18 10:00 pm
Wetter-Symbol
15° | 27°°C 0 mm 0% 8 mph 72 % 1027 mb 0 mm/h
Do. Juni 19 10:00 pm
Wetter-Symbol
16° | 26°°C 0 mm 0% 12 mph 80 % 1027 mb 0 mm/h
Fr. Juni 20 10:00 pm
Wetter-Symbol
16° | 31°°C 0 mm 0% 10 mph 76 % 1025 mb 0 mm/h
Today 7:00 am
Wetter-Symbol
14° | 15°°C 0 mm 0% 3 mph 84 % 1027 mb 0 mm/h
Today 10:00 am
Wetter-Symbol
19° | 21°°C 0 mm 0% 3 mph 65 % 1028 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
24° | 24°°C 0 mm 0% 4 mph 42 % 1028 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
27° | 27°°C 0 mm 0% 5 mph 37 % 1026 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
24° | 24°°C 0 mm 0% 9 mph 47 % 1026 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
20° | 20°°C 0 mm 0% 5 mph 66 % 1027 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
18° | 18°°C 0 mm 0% 4 mph 78 % 1027 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
16° | 16°°C 0 mm 0% 4 mph 78 % 1027 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€91,694.84
0.35%
Ethereum(ETH)
€2,224.79
1.48%
Fesseln(USDT)
€0.87
-0.03%
XRP(XRP)
€1.88
0.95%
Solana(SOL)
€134.75
6.75%
USDC(USDC)
€0.87
0.01%
Dogecoin(DOGE)
€0.152523
-0.89%
Shiba Inu(SHIB)
€0.000010
-0.12%
Pepe(PEPE)
€0.000010
0.98%
Nach oben scrollen