CVE-2008-2246
CVSS Score Not Available
53.58%
MEDIUM RiskEPSS (98th percentile)
Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypass intended access restrictions.
Published: 8/13/2008
Modified: 4/9/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
53.58%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 53.58% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.