Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-7110

Опубликовано: 02 мая 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Transifex command-line client before 0.10 does not validate X.509 certificates for data transfer connections, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-2073.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

DNE

disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

esm-apps/xenial

needed

Показывать по

EPSS

Процентиль: 38%
0.00164
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

Transifex command-line client before 0.10 does not validate X.509 certificates for data transfer connections, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-2073.

debian
почти 12 лет назад

Transifex command-line client before 0.10 does not validate X.509 cert ...

CVSS3: 7.5
github
больше 3 лет назад

Transifex command-line client has improper certificate validation

EPSS

Процентиль: 38%
0.00164
Низкий

4.3 Medium

CVSS2