PT-2006-3342 · Microsoft · Windows 2000 Sp4+1

Konstantin Topanov

·

Publicado

2006-06-13

·

Atualizado

2019-04-30

·

CVE-2006-2380

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Windows 2000 SP4
Description The issue is related to the way RPC handles mutual authentication over SSL, allowing remote attackers to spoof an RPC server. This could enable an attacker to persuade a user to connect to a malicious RPC server that appears to be valid.
Recommendations For Microsoft Windows 2000 SP4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-2380

Produtos afetados

Windows 2000 Sp4
Windows