> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942)

[SOURCE] RCE Security [AUTHOR: Julien Ahrens] [DATE: 23/11/2022 16:00] [LANGUAGE: EN]
From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942)
This small series of two blog posts covers an entire vulnerability chain to go from unauthenticated user to full remote code execution against Intel's Data Center Manager (up to version 4.1.1.45749).The chain's first vulnerability bypasses DCM's entire authentication process.
[messages.read_original_source] →