Unrated severityNVD Advisory· Published Aug 27, 2001· Updated Apr 16, 2026
CVE-2001-1443
CVE-2001-1443
Description
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
Affected products
2cpe:2.3:a:kth:kth_kerberos:4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:kth:kth_kerberos:4:*:*:*:*:*:*:*
- cpe:2.3:a:kth:kth_kerberos:5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- josefsson.org/ktelnet/kerberos-telnet.htmlnvdExploit
- www.kb.cert.org/vuls/id/390280nvdThird Party AdvisoryUS Government Resource
- exchange.xforce.ibmcloud.com/vulnerabilities/10640nvd
News mentions
0No linked articles in our index yet.