Vulnerabilities > CVE-2001-0034 - Unspecified vulnerability in KTH Kerberos

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
kth
exploit available

Summary

KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false proxy responses and possibly gain privileges.

Vulnerable Configurations

Part Description Count
Application
Kth
1

Exploit-Db

descriptionKTH Kerberos 4 Arbitrary Proxy Usage Vulnerability. CVE-2001-0034. Remote exploits for multiple platform
idEDB-ID:20491
last seen2016-02-02
modified2000-12-08
published2000-12-08
reporterJouko Pynnonen
sourcehttps://www.exploit-db.com/download/20491/
titleKTH Kerberos 4 - Arbitrary Proxy Usage Vulnerability