Описание
qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors.
A flaw was found in qBittorrent's DownloadManager component. This vulnerability allows remote code execution via improper validation of SSL/TLS certificates, enabling attackers to perform man-in-the-middle and RCE attacks.
Отчет
No Red Hat products are affected by this vulnerability.
Дополнительная информация
Статус:
EPSS
8.1 High
CVSS3
Связанные уязвимости
qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors.
qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors.
qBittorrent before 5.0.1 proceeds with use of https URLs even after ce ...
qBittorrent before 5.0.1 proceeds with use of https URLs even after certificate validation errors.
EPSS
8.1 High
CVSS3