Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-7562
HistoryJul 26, 2018 - 3:29 p.m.

Authentication flaw

2018-07-2615:29:00
PRIOn knowledge base
www.prio-n.com
6

6.7 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

58.8%

An authentication bypass flaw was found in the way krb5’s certauth interface before 1.16.1 handled the validation of client certificates. A remote attacker able to communicate with the KDC could potentially use this flaw to impersonate arbitrary principals under rare and erroneous circumstances.

6.7 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

58.8%