Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2009-1930 | First vendor Publication | 2009-08-12 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The Telnet service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote Telnet servers to execute arbitrary code on a client machine by replaying the NTLM credentials of a client user, aka "Telnet Credential Reflection Vulnerability," a related issue to CVE-2000-0834. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1930 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-255 | Credentials Management |
OVAL Definitions
CPE : Common Platform Enumeration
SAINT Exploits
Description | Link |
---|---|
Windows Telnet credential reflection | More info here |
OpenVAS Exploits
Date | Description |
---|---|
2009-08-12 | Name : Telnet NTLM Credential Reflection Authentication Bypass Vulnerability (960859) File : nvt/secpod_ms09-042.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
56904 | Microsoft Windows Telnet NTLM Credential Reflection Remote Access |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2009-08-13 | IAVM : 2009-B-0037 - Microsoft Telnet Remote Code Execution Vulnerability Severity : Category II - VMSKEY : V0019879 |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | possible SMB replay attempt - overlapping encryption keys detected RuleID : 17723 - Revision : 12 - Type : OS-WINDOWS |
2014-01-10 | Possible Microsoft telnet NTLM reflection attempt RuleID : 17627 - Revision : 3 - Type : POLICY |
2014-01-10 | Telnet-based NTLM replay attack attempt RuleID : 15847 - Revision : 14 - Type : OS-WINDOWS |
2014-01-10 | SMB replay attempt via NTLMSSP - overlapping encryption keys detected RuleID : 15453 - Revision : 16 - Type : OS-WINDOWS |
2014-01-10 | Web-based NTLM replay attack attempt RuleID : 15124 - Revision : 17 - Type : OS-WINDOWS |
2014-01-10 | possible SMB replay attempt - overlapping encryption keys detected RuleID : 15009 - Revision : 22 - Type : OS-WINDOWS |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2009-08-11 | Name : Arbitrary code can be executed on the remote host through the remote Telnet c... File : smb_nt_ms09-042.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:10:40 |
|
2024-11-28 12:19:09 |
|
2023-12-07 21:28:05 |
|
2021-05-04 12:09:40 |
|
2021-04-22 01:10:01 |
|
2020-05-23 00:23:53 |
|
2018-10-31 00:19:57 |
|
2018-10-13 00:22:50 |
|
2017-09-29 09:24:15 |
|
2016-09-30 01:02:05 |
|
2016-08-31 12:01:48 |
|
2016-06-28 17:43:15 |
|
2016-04-26 18:52:34 |
|
2014-02-17 10:50:22 |
|
2014-01-19 21:25:57 |
|
2013-11-11 12:38:20 |
|
2013-05-10 23:51:50 |
|