/CVE-2024-21400-POC

CVE-2024-21400 is a privilege escalation vulnerability that rates a CVSS score of 9.0.

CVE-2024-21400-POC

CVE-2024-21400 is a privilege escalation vulnerability that rates a CVSS score of 9.0.

Date of published

2024/03/13

🔥 CVSS: 9.8/10

image

Description

The bug in Microsoft’s Azure Kubernetes Service Confidential Container could allow an unauthenticated attacker to steal credentials to take over “confidential guests and containers beyond the network stack it might be bound to”.

IMPACT

While specific threat actors exploiting CVE-2024-21400 remain unidentified, groups like APT28 have history in NTLM relay attacks.

NTLM relay attacks involve coercing a network device, such as servers or domain controllers, to authenticate with an NTLM relay server controlled by the attacker. This manipulation allows the attacker to impersonate the authenticated device, thereby gaining elevated privileges.

Download

Contact

For education purposes only. Copies are limited.