Логотип exploitDog
bind:CVE-2012-5783
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-5783

Количество 6

Количество 6

ubuntu логотип

CVE-2012-5783

почти 13 лет назад

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
EPSS: Низкий
redhat логотип

CVE-2012-5783

почти 13 лет назад

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2012-5783

почти 13 лет назад

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
EPSS: Низкий
debian логотип

CVE-2012-5783

почти 13 лет назад

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Ser ...

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-3832-9276-x7gf

больше 3 лет назад

Improper Certificate Validation in Apache Commons HttpClient

EPSS: Низкий
oracle-oval логотип

ELSA-2013-0270

больше 12 лет назад

ELSA-2013-0270: jakarta-commons-httpclient security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-5783

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
0%
Низкий
почти 13 лет назад
redhat логотип
CVE-2012-5783

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS3: 3.7
0%
Низкий
почти 13 лет назад
nvd логотип
CVE-2012-5783

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
0%
Низкий
почти 13 лет назад
debian логотип
CVE-2012-5783

Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Ser ...

CVSS2: 5.8
0%
Низкий
почти 13 лет назад
github логотип
GHSA-3832-9276-x7gf

Improper Certificate Validation in Apache Commons HttpClient

0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2013-0270

ELSA-2013-0270: jakarta-commons-httpclient security update (MODERATE)

больше 12 лет назад

Уязвимостей на страницу