PT-2006-3342 · Microsoft · Windows 2000 Sp4+1
Konstantin Topanov
·
Published
2006-06-13
·
Updated
2019-04-30
·
CVE-2006-2380
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows 2000 SP4
Description
The issue is related to the way RPC handles mutual authentication over SSL, allowing remote attackers to spoof an RPC server. This could enable an attacker to persuade a user to connect to a malicious RPC server that appears to be valid.
Recommendations
For Microsoft Windows 2000 SP4, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows 2000 Sp4
Windows