[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255861

 
 

909

 
 

199025

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2005-1982Date: (C)2005-08-10   (M)2023-12-22


Unknown vulnerability in the PKINIT Protocol for Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow a local user to obtain information and spoof a server via a man-in-the-middle (MITM) attack between a client and a domain controller when PKINIT smart card authentication is being used.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 3.6
Exploit Score: 3.9
Impact Score: 4.9
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECTRACK-1014642
BID-14520
SECUNIA-16368
MS05-042
VU#477341
oval:org.mitre.oval:def:100096
oval:org.mitre.oval:def:100098
oval:org.mitre.oval:def:100100
oval:org.mitre.oval:def:100102
oval:org.mitre.oval:def:100104
oval:org.mitre.oval:def:100106

CPE    2
cpe:/o:microsoft:windows_2000
cpe:/o:microsoft:windows_xp::gold:professional
OVAL    6
oval:org.mitre.oval:def:100102
oval:org.mitre.oval:def:100100
oval:org.mitre.oval:def:100106
oval:org.mitre.oval:def:100104
...

© SecPod Technologies