CVE-2013-1923 - CERT CVE
ID CVE-2013-1923
Sažetak rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofing attacks.
Reference
CVSS
Base: 3.2
Impact: 4.9
Exploitability:3.2
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL NONE
CVSS vektor AV:A/AC:H/Au:N/C:P/I:P/A:N
Zadnje važnije ažuriranje 29-08-2017 - 01:33
Objavljeno 21-01-2014 - 18:55