CVE-2005-1982: Low severity Microsoft Windows 2003 Server vulnerability
Unknown vulnerability in the PKINIT Protocol for Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow a local user to obtain information and spoof a server via a man-in-the-middle (MITM) attack between a client and a domain controller when PKINIT smart card authentication is being used.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1982?
CVE-2005-1982 is classified as a high-severity vulnerability due to the potential for man-in-the-middle attacks.
How can I mitigate CVE-2005-1982?
Mitigation of CVE-2005-1982 can be achieved by applying relevant patches and avoiding the use of PKINIT with vulnerable systems.
What platforms are affected by CVE-2005-1982?
CVE-2005-1982 affects Microsoft Windows 2000, Windows XP, and Windows Server 2003.
How does CVE-2005-1982 impact PKINIT smart card authentication?
CVE-2005-1982 can allow a local user to spoof a server, compromising the integrity of PKINIT smart card authentication.
Is there a workaround for CVE-2005-1982?
Disabling PKINIT or implementing additional authentication measures may serve as a temporary workaround for CVE-2005-1982.