VULNERABILITY INTELLIGENCE
CVE-2005-1982
CVSS score3.6 LOW
EPSS probability1.70%
CISA KEVNot currently listed
Published2005-08-10
Last modified2026-06-16
CVSS vectorAV:L/AC:L/Au:N/C:P/I:P/A:N
Description
Unknown vulnerability in the PKINIT Protocol for Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow a local user to obtain information and spoof a server via a man-in-the-middle (MITM) attack between a client and a domain controller when PKINIT smart card authentication is being used.
Primary references
- secure@microsoft.com — Patch, Vendor Advisory
- secure@microsoft.com
- secure@microsoft.com — US Government Resource
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- secure@microsoft.com
- af854a3a-2127-422b-91ae-364da2661108 — Patch, Vendor Advisory