Количество 11
Количество 11
GHSA-r53v-vm87-f72c
Improper Validation of Certificates in apache axis

CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.

CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.

CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784.
CVE-2014-3596
The getCN function in Apache Axis 1.4 and earlier does not properly ve ...
ELSA-2014-1193
ELSA-2014-1193: axis security update (IMPORTANT)

openSUSE-SU-2019:1526-1
Security update for axis

openSUSE-SU-2019:1497-1
Security update for axis

SUSE-SU-2019:1382-1
Security update for axis

SUSE-SU-2019:1373-2
Security update for axis

SUSE-SU-2019:1373-1
Security update for axis
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-r53v-vm87-f72c Improper Validation of Certificates in apache axis | 1% Низкий | почти 7 лет назад | ||
![]() | CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | почти 11 лет назад |
![]() | CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | около 11 лет назад |
![]() | CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a certificate with a subject that specifies a common name in a field that is not the CN field. NOTE: this issue exists because of an incomplete fix for CVE-2012-5784. | CVSS2: 5.8 | 1% Низкий | почти 11 лет назад |
CVE-2014-3596 The getCN function in Apache Axis 1.4 and earlier does not properly ve ... | CVSS2: 5.8 | 1% Низкий | почти 11 лет назад | |
ELSA-2014-1193 ELSA-2014-1193: axis security update (IMPORTANT) | почти 11 лет назад | |||
![]() | openSUSE-SU-2019:1526-1 Security update for axis | около 6 лет назад | ||
![]() | openSUSE-SU-2019:1497-1 Security update for axis | около 6 лет назад | ||
![]() | SUSE-SU-2019:1382-1 Security update for axis | около 6 лет назад | ||
![]() | SUSE-SU-2019:1373-2 Security update for axis | почти 6 лет назад | ||
![]() | SUSE-SU-2019:1373-1 Security update for axis | около 6 лет назад |
Уязвимостей на страницу