AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-1473

HIGH · CVSS 10 EPSS 3.19%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-05-27 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 10.0. It affects Windows, Java. It may be remotely exploitable.

CVE
CVE-2009-1473
Severity
HIGH
CVSS
10
EPSS
3.19%
Windows Java

Original NVD Description

The (1) Windows and (2) Java client programs for the ATEN KH1516i IP KVM switch with firmware 1.0.063 and the KN9116 IP KVM switch with firmware 1.1.104 do not properly use RSA cryptography for a symmetric session-key negotiation, which makes it easier for remote attackers to (a) decrypt network traffic, or (b) conduct man-in-the-middle attacks, by repeating unspecified "client-side calculations."