Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3312

Опубликовано: 14 окт. 2010
Источник: nvd
CVSS2: 5.8
EPSS Низкий

Описание

Epiphany 2.28 and 2.29, when WebKit and LibSoup are used, unconditionally displays a closed-lock icon for any URL beginning with the https: substring, without any warning to the user, which allows man-in-the-middle attackers to spoof arbitrary https web sites via a crafted X.509 server certificate.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gnome:epiphany:2.28:*:*:*:*:*:*:*
cpe:2.3:a:gnome:epiphany:2.29:*:*:*:*:*:*:*

EPSS

Процентиль: 61%
0.01038
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 16 лет назад

Epiphany 2.28 and 2.29, when WebKit and LibSoup are used, unconditionally displays a closed-lock icon for any URL beginning with the https: substring, without any warning to the user, which allows man-in-the-middle attackers to spoof arbitrary https web sites via a crafted X.509 server certificate.

debian
почти 16 лет назад

Epiphany 2.28 and 2.29, when WebKit and LibSoup are used, unconditiona ...

github
около 4 лет назад

Epiphany 2.28 and 2.29, when WebKit and LibSoup are used, unconditionally displays a closed-lock icon for any URL beginning with the https: substring, without any warning to the user, which allows man-in-the-middle attackers to spoof arbitrary https web sites via a crafted X.509 server certificate.

EPSS

Процентиль: 61%
0.01038
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other