Логотип exploitDog
bind:CVE-2013-4111
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-4111

Количество 5

Количество 5

ubuntu логотип

CVE-2013-4111

больше 12 лет назад

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
EPSS: Низкий
redhat логотип

CVE-2013-4111

больше 12 лет назад

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2013-4111

больше 12 лет назад

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
EPSS: Низкий
debian логотип

CVE-2013-4111

больше 12 лет назад

The Python client library for Glance (python-glanceclient) before 0.10 ...

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-qgfg-gvff-523v

больше 3 лет назад

python-glanceclient vulnerable to SSL server spoofing due to unverified X.509 certificate

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-4111

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
0%
Низкий
больше 12 лет назад
redhat логотип
CVE-2013-4111

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5
0%
Низкий
больше 12 лет назад
nvd логотип
CVE-2013-4111

The Python client library for Glance (python-glanceclient) before 0.10.0 does not properly check the preverify_ok value, which prevents the server hostname from being verified with a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate and allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

CVSS2: 5.8
0%
Низкий
больше 12 лет назад
debian логотип
CVE-2013-4111

The Python client library for Glance (python-glanceclient) before 0.10 ...

CVSS2: 5.8
0%
Низкий
больше 12 лет назад
github логотип
GHSA-qgfg-gvff-523v

python-glanceclient vulnerable to SSL server spoofing due to unverified X.509 certificate

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу