7.2
CVSSv2

CVE-2001-0034

Published: 16/02/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false proxy responses and possibly gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

kth kth kerberos

Exploits

source: wwwsecurityfocuscom/bid/2090/info Kerberos is a widely used network service authentication system The version of Kerberos developed and maintained by KTH (Swedish Royal Institute of Technology) contains a vulnerability that may allow/assist in a local or remote root compromise KTH Kerberos uses an environment variable called 'k ...