Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-4545

The http_negotiate_create_context function in protocol/http/http_negotiate.c in ELinks 0.12 before 0.12pre6, when using HTTP Negotiate or GSS-Negotiate authentication, delegates user credentials through GSSAPI, which allows remote servers to authenticate as the client via the delegated credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.0%
CVSS Severity
CVSS v2 Score 5.1
References
Products affected by CVE-2012-4545
  • Elinks » Elinks » Version: 0.12
    cpe:2.3:a:elinks:elinks:0.12


Contact Us

Shodan ® - All rights reserved