CyberRota
Live Feed
Return to register
Case File

CVE-2011-0040

MEDIUM · CVSS 5 EPSS 22.76%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-02-09 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2011-0040
Severity
MEDIUM
CVSS
5
EPSS
22.76%
Microsoft Windows

Original Filing — NVD Description

The server in Microsoft Active Directory on Windows Server 2003 SP2 does not properly handle an update request for a service principal name (SPN), which allows remote attackers to cause a denial of service (authentication downgrade or outage) via a crafted request that triggers name collisions, aka "Active Directory SPN Validation Vulnerability."