Количество 8
Количество 8
GHSA-8w94-cf6g-c8mg
Man-in-the-Middle (MitM)
CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.
CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.
CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.
CVE-2014-5277
CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when ...
SUSE-SU-2025:03545-1
Security update for docker-stable
SUSE-SU-2025:03540-1
Security update for docker-stable
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-8w94-cf6g-c8mg Man-in-the-Middle (MitM) | CVSS3: 5.3 | 1% Низкий | почти 4 года назад | |
CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5 | 1% Низкий | около 11 лет назад | |
CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5.1 | 1% Низкий | около 11 лет назад | |
CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5 | 1% Низкий | около 11 лет назад | |
1% Низкий | больше 4 лет назад | |||
CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when ... | CVSS2: 5 | 1% Низкий | около 11 лет назад | |
SUSE-SU-2025:03545-1 Security update for docker-stable | 2 месяца назад | |||
SUSE-SU-2025:03540-1 Security update for docker-stable | 2 месяца назад |
Уязвимостей на страницу