Unencrypted Communication Vulnerability in KTH Kerberos IV and Kerberos V (Heimdal) for Telnet Clients

Unencrypted Communication Vulnerability in KTH Kerberos IV and Kerberos V (Heimdal) for Telnet Clients

CVE-2001-1443 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.

Learn more about our Cis Benchmark Audit For Server Software.