Lucene search

K
nvd[email protected]NVD:CVE-2005-1205
HistoryJun 14, 2005 - 4:00 a.m.

CVE-2005-1205

2005-06-1404:00:00
web.nvd.nist.gov
6

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.4

Confidence

Low

EPSS

0.888

Percentile

98.7%

The Telnet client for Microsoft Windows XP, Windows Server 2003, and Windows Services for UNIX allows remote attackers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.

Affected configurations

Nvd
Node
microsoftwindows_2003_serverMatchenterprise64-bit
OR
microsoftwindows_2003_serverMatchr264-bit
OR
microsoftwindows_2003_serverMatchstandard64-bit
OR
microsoftwindows_2003_serverMatchweb
VendorProductVersionCPE
microsoftwindows_2003_serverenterprisecpe:2.3:o:microsoft:windows_2003_server:enterprise:*:64-bit:*:*:*:*:*
microsoftwindows_2003_serverr2cpe:2.3:o:microsoft:windows_2003_server:r2:*:64-bit:*:*:*:*:*
microsoftwindows_2003_serverstandardcpe:2.3:o:microsoft:windows_2003_server:standard:*:64-bit:*:*:*:*:*
microsoftwindows_2003_serverwebcpe:2.3:o:microsoft:windows_2003_server:web:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.4

Confidence

Low

EPSS

0.888

Percentile

98.7%