Количество 11
Количество 11
CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.
CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.
CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.
CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly ve ...
GHSA-r53v-vm87-f72c
Improper Validation of Certificates in apache axis
ELSA-2014-1193
ELSA-2014-1193: axis security update (IMPORTANT)
openSUSE-SU-2019:1526-1
Security update for axis
openSUSE-SU-2019:1497-1
Security update for axis
SUSE-SU-2019:1382-1
Security update for axis
SUSE-SU-2019:1373-2
Security update for axis
SUSE-SU-2019:1373-1
Security update for axis
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | около 11 лет назад | |
CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | около 11 лет назад | |
CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | около 11 лет назад | |
CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly ve ... | CVSS2: 5.8 | 1% Низкий | около 11 лет назад | |
GHSA-r53v-vm87-f72c Improper Validation of Certificates in apache axis | 1% Низкий | около 7 лет назад | ||
ELSA-2014-1193 ELSA-2014-1193: axis security update (IMPORTANT) | около 11 лет назад | |||
openSUSE-SU-2019:1526-1 Security update for axis | больше 6 лет назад | |||
openSUSE-SU-2019:1497-1 Security update for axis | больше 6 лет назад | |||
SUSE-SU-2019:1382-1 Security update for axis | больше 6 лет назад | |||
SUSE-SU-2019:1373-2 Security update for axis | около 6 лет назад | |||
SUSE-SU-2019:1373-1 Security update for axis | больше 6 лет назад |
Уязвимостей на страницу