积极预防 及时发现
快速响应 力保恢复
Novell BorderManager中的ClientTrust程序不能完全校验认证请求的起源,这...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20000651 CVE编号:CVE-2000-0651 安全级别:中 漏洞中文描述: Novell BorderManager中的ClientTrust程序不能完全校验认证请求的起源,这可能导致远程攻击者通过重放认证请求和来自受害者机器3024端口的响应来伪装成其它用户。 漏洞英文描述: The ClientTrust program in Novell BorderManager does not properly verify the origin of authentication requests, which could allow remote attackers to impersonate another user by replaying the authentication requests and responses from port 3024 of the vic 漏洞参考: 系统类型:其他 漏洞类型:其他