Описание
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
Ссылки
- Exploit
- Third Party AdvisoryUS Government Resource
- Exploit
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:kth:kth_kerberos:4:*:*:*:*:*:*:*
cpe:2.3:a:kth:kth_kerberos:5:*:*:*:*:*:*:*
EPSS
Процентиль: 71%
0.00701
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
EPSS
Процентиль: 71%
0.00701
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other