VYPR
Medium severity5.9NVD Advisory· Published Oct 10, 2019· Updated Jun 17, 2026

CVE-2019-1338

CVE-2019-1338

Description

A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLMv2 protection if a client is also sending LMv2 responses, aka 'Windows NTLM Security Feature Bypass Vulnerability'.

Affected products

7
  • Microsoft/Windowsv52 versions
    7 for 32-bit Systems Service Pack 1+ 1 more
    • (no CPE)range: 7 for 32-bit Systems Service Pack 1
    • (no CPE)
  • cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*
    • cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*
  • Range: 2008 R2 for x64-based Systems Service Pack 1 (Core installation)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.