AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2010-4021

LOW · CVSS 2.1 EPSS 2.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2010-12-02 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2010-4021
Severity
LOW
CVSS
2.1
EPSS
2.09%

Original NVD Description

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 does not properly restrict the use of TGT credentials for armoring TGS requests, which might allow remote authenticated users to impersonate a client by rewriting an inner request, aka a "KrbFastReq forgery issue."