Field Assessment
AI analysis pending.
CVE
CVE-2013-6434
Severity
MEDIUM
CVSS
4.3
EPSS
0.97%
Original Filing — NVD Description
The remote-viewer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.3, when using a native SPICE client invocation method, initially makes insecure connections to the SPICE server, which allows man-in-the-middle attackers to spoof the SPICE server.