PT-2006-3342 · Microsoft · Windows 2000 Sp4+1

Konstantin Topanov

·

Published

2006-06-13

·

Updated

2019-04-30

·

CVE-2006-2380

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Windows 2000 SP4
Description The issue is related to the way RPC handles mutual authentication over SSL, allowing remote attackers to spoof an RPC server. This could enable an attacker to persuade a user to connect to a malicious RPC server that appears to be valid.
Recommendations For Microsoft Windows 2000 SP4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-2380

Affected Products

Windows 2000 Sp4
Windows