PT-2006-3342 · Microsoft · Windows 2000 Sp4+1
Konstantin Topanov
·
Publicado
2006-06-13
·
Atualizado
2019-04-30
·
CVE-2006-2380
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows 2000 SP4
Description
The issue is related to the way RPC handles mutual authentication over SSL, allowing remote attackers to spoof an RPC server. This could enable an attacker to persuade a user to connect to a malicious RPC server that appears to be valid.
Recommendations
For Microsoft Windows 2000 SP4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Windows 2000 Sp4
Windows