kth records
16 published records for vendor kth.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 43.8%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
All records
16 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
45Plan | CVE-2002-1235No exploit | The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and eamit · kerberos 5 | Critical10.0 | — | 15.1% | Nov 4, 2002 |
41Plan | CVE-2002-1225No exploit | Multiple buffer overflows in Heimdal before 0.5, possibly in both the (1) kadmind and (2) kdc servers, may allow remote attackers to gain rokth · heimdal | Critical10.0 | — | 4.5% | Oct 28, 2002 |
41Plan | CVE-2002-1226No exploit | Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or locakth · heimdal | Critical10.0 | — | 2.4% | Oct 28, 2002 |
32Monitor | CVE-2006-0677No exploit | telnetd in Heimdal 0.6.x before 0.6.6 and 0.7.x before 0.7.2 allows remote unauthenticated attackers to cause a denial of service (server crkth · heimdal | High7.8 | — | 3.1% | Feb 14, 2006 |
31Monitor | CVE-2002-0600No exploit | Heap overflow in the KTH Kerberos 4 FTP client 4-1.1.1 allows remote malicious servers to execute arbitrary code on the client via a long rekth · kth kerberos | High7.5 | — | 2.4% | Jun 18, 2002 |
30Monitor | CVE-2012-6303Proof of concept | Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, kth · snack sound toolkit · CWE-119 | Medium6.8 | — | 10.2% | Oct 28, 2013 |
30Monitor | CVE-2001-1444No exploit | The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption optkth · kth kerberos | High7.5 | — | 1.3% | Aug 27, 2001 |
29Monitor | CVE-2001-0035No exploit | Buffer overflow in the kdc_reply_cipher function in KTH Kerberos IV allows remote attackers to cause a denial of service and possibly executkth · kth kerberos | High7.2 | — | 2.5% | Feb 16, 2001 |
28Monitor | CVE-2001-0034Proof of concept | KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false proxkth · kth kerberos | High7.2 | — | 1.0% | Feb 16, 2001 |
28Monitor | CVE-2001-0033No exploit | KTH Kerberos IV allows local users to change the configuration of a Kerberos server running at an elevated privilege by specifying an alternkth · kth kerberos | High7.2 | — | 0.5% | Feb 16, 2001 |
28Monitor | CVE-2002-0754No exploit | Kerberos 5 su (k5su) in FreeBSD 4.4 and earlier relies on the getlogin system call to determine if the user running k5su is root, which coulfreebsd · heimdal | High7.2 | — | 0.4% | Aug 12, 2002 |
20Monitor | CVE-2004-0371No exploit | Heimdal 0.6.x before 0.6.1 and 0.5.x before 0.5.3 does not properly perform certain consistency checks for cross-realm requests, which allowkth · heimdal | Medium5.0 | — | 1.5% | May 4, 2004 |
20Monitor | CVE-1999-1099No exploit | Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertenkth · kth kerberos | Medium5.0 | — | 1.3% | Nov 22, 1996 |
20Monitor | CVE-2001-1443No exploit | KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryptikth · kth kerberos | Medium5.0 | — | 1.1% | Aug 27, 2001 |
8Monitor | CVE-2006-0582No exploit | Unspecified vulnerability in rshd in Heimdal 0.6.x before 0.6.6 and 0.7.x before 0.7.2, when storing forwarded credentials, allows attackerskth · heimdal | Low2.1 | — | 0.5% | Feb 7, 2006 |
4Monitor | CVE-2001-0036No exploit | KTH Kerberos IV allows local users to overwrite arbitrary files via a symlink attack on a ticket file.kth · kth kerberos | Low1.2 | — | 0.4% | Feb 16, 2001 |
- CVE-2002-123545Plan
The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and ea
CriticalCVSS 10.0No exploitEPSS 15%mit · kerberos 5Nov 4, 2002
- CVE-2002-122541Plan
Multiple buffer overflows in Heimdal before 0.5, possibly in both the (1) kadmind and (2) kdc servers, may allow remote attackers to gain ro
CriticalCVSS 10.0No exploitEPSS 5%kth · heimdalOct 28, 2002
- CVE-2002-122641Plan
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or loca
CriticalCVSS 10.0No exploitEPSS 2%kth · heimdalOct 28, 2002
- CVE-2006-067732Monitor
telnetd in Heimdal 0.6.x before 0.6.6 and 0.7.x before 0.7.2 allows remote unauthenticated attackers to cause a denial of service (server cr
HighCVSS 7.8No exploitEPSS 3%kth · heimdalFeb 14, 2006
- CVE-2002-060031Monitor
Heap overflow in the KTH Kerberos 4 FTP client 4-1.1.1 allows remote malicious servers to execute arbitrary code on the client via a long re
HighCVSS 7.5No exploitEPSS 2%kth · kth kerberosJun 18, 2002
- CVE-2012-630330Monitor
Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4,
MediumCVSS 6.8Proof of conceptEPSS 10%kth · snack sound toolkitOct 28, 2013
- CVE-2001-144430Monitor
The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption opt
HighCVSS 7.5No exploitEPSS 1%kth · kth kerberosAug 27, 2001
- CVE-2001-003529Monitor
Buffer overflow in the kdc_reply_cipher function in KTH Kerberos IV allows remote attackers to cause a denial of service and possibly execut
HighCVSS 7.2No exploitEPSS 2%kth · kth kerberosFeb 16, 2001
- CVE-2001-003428Monitor
KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false prox
HighCVSS 7.2Proof of conceptEPSS 1%kth · kth kerberosFeb 16, 2001
- CVE-2001-003328Monitor
KTH Kerberos IV allows local users to change the configuration of a Kerberos server running at an elevated privilege by specifying an altern
HighCVSS 7.2No exploitEPSS 0%kth · kth kerberosFeb 16, 2001
- CVE-2002-075428Monitor
Kerberos 5 su (k5su) in FreeBSD 4.4 and earlier relies on the getlogin system call to determine if the user running k5su is root, which coul
HighCVSS 7.2No exploitEPSS 0%freebsd · heimdalAug 12, 2002
- CVE-2004-037120Monitor
Heimdal 0.6.x before 0.6.1 and 0.5.x before 0.5.3 does not properly perform certain consistency checks for cross-realm requests, which allow
MediumCVSS 5.0No exploitEPSS 2%kth · heimdalMay 4, 2004
- CVE-1999-109920Monitor
Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadverten
MediumCVSS 5.0No exploitEPSS 1%kth · kth kerberosNov 22, 1996
- CVE-2001-144320Monitor
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encrypti
MediumCVSS 5.0No exploitEPSS 1%kth · kth kerberosAug 27, 2001
- CVE-2006-05828Monitor
Unspecified vulnerability in rshd in Heimdal 0.6.x before 0.6.6 and 0.7.x before 0.7.2, when storing forwarded credentials, allows attackers
LowCVSS 2.1No exploitEPSS 0%kth · heimdalFeb 7, 2006
- CVE-2001-00364Monitor
KTH Kerberos IV allows local users to overwrite arbitrary files via a symlink attack on a ticket file.
LowCVSS 1.2No exploitEPSS 0%kth · kth kerberosFeb 16, 2001