Information Disclosure Vulnerability in Telnet Client

Microsoft Telnet client contains an information disclosure vulnerability that could allow an intruder to read session variables of users connected to a Telnet server.

ITPro Today

June 14, 2005

1 Min Read
ITPro Today logo in a gray background | ITPro Today

InformationDisclosure Vulnerability in Telnet Client

ReportedJune 14, 2005 by Microsoft

VERSIONS AFFECTED

Windows 2000Windows XPWindows Server 2003Microsoft Windows Services for UNIX

DESCRIPTION

Microsoft Telnetclient contains an information disclosure vulnerability that couldallow an intruder to read session variables of users connected to aTelnet server.

VENDOR RESPONSE

Microsoft released asecurity bulletin, Vulnerabilityin Telnet Client Could Allow Information Disclosure (896428),and an associated patch to correct the problem.

CREDITS

Gaël Delalleauand iDEFENSE reported the vulnerability


Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like