KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Kth_kerberos | Kth | 4 (including) | 4 (including) |
Kth_kerberos | Kth | 5 (including) | 5 (including) |