Количество 6
Количество 6

CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.

CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.

CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.

CVE-2014-5277
CVE-2014-5277
Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when ...
GHSA-8w94-cf6g-c8mg
Man-in-the-Middle (MitM)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5 | 1% Низкий | больше 10 лет назад |
![]() | CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5.1 | 1% Низкий | больше 10 лет назад |
![]() | CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | CVSS2: 5 | 1% Низкий | больше 10 лет назад |
![]() | 1% Низкий | почти 4 года назад | ||
CVE-2014-5277 Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when ... | CVSS2: 5 | 1% Низкий | больше 10 лет назад | |
GHSA-8w94-cf6g-c8mg Man-in-the-Middle (MitM) | CVSS3: 5.3 | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу