[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2011-0043
Kerberos in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 supports weak hashing algorithms, which allows local users to gain privileges by operating a service that sends crafted service tickets, as demonstrated by the CRC32 algorithm, aka "Kerberos Unkeyed Checksum Vulnerability."

CVE-2011-0091
Kerberos in Microsoft Windows Server 2008 R2 and Windows 7 does not prevent a session from changing from strong encryption to DES encryption, which allows man-in-the-middle attackers to spoof network traffic and obtain sensitive information via a DES downgrade, aka "Kerberos Spoofing Vulnerability."

*OVAL
oval:org.secpod.oval:def:1038
CPE    10
cpe:/o:microsoft:windows_7:::x64
cpe:/o:microsoft:windows_7:::x86
cpe:/o:microsoft:windows_server_2003::sp2:x64
cpe:/o:microsoft:windows_xp
...
XCCDF    7
xccdf_com.secpod_benchmark_microsoft-windows-server-2008
xccdf_com.secpod_benchmark_microsoft-windows-7
xccdf_com.secpod_benchmark_microsoft-windows-server-2008-r2
xccdf_scaprepo.com_benchmark_microsoft-windows-server-2008-r2
...

© SecPod Technologies