Skip to main content

CVE-2008-2246

CVSS Score Not Available
53.58%
MEDIUM RiskEPSS (98th percentile)

Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypass intended access restrictions.

Published: 8/13/2008
Modified: 4/9/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

53.58%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 53.58% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.