Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-4968

Опубликовано: 19 нояб. 2019
Источник: debian

Описание

nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nginxfixed1.9.1-1package
nginxno-dsajessiepackage
nginxno-dsasqueezepackage
nginxno-dsawheezypackage

Примечания

  • http://trac.nginx.org/nginx/ticket/13

  • Upstream commit: http://trac.nginx.org/nginx/changeset/060c2e692b96a150b584b8e30d596be1f2defa9c/nginx

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 6 лет назад

nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)

CVSS3: 4.8
nvd
около 6 лет назад

nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)

CVSS3: 4.8
github
почти 4 года назад

nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)