Логотип exploitDog
bind:CVE-2019-10091
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10091

Количество 2

Количество 2

nvd логотип

CVE-2019-10091

почти 6 лет назад

When TLS is enabled with ssl-endpoint-identification-enabled set to true, Apache Geode fails to perform hostname verification of the entries in the certificate SAN during the SSL handshake. This could compromise intra-cluster communication using a man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-wc4x-4gm2-74j8

почти 4 года назад

Apache Geode SSL endpoint verification vulnerability

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-10091

When TLS is enabled with ssl-endpoint-identification-enabled set to true, Apache Geode fails to perform hostname verification of the entries in the certificate SAN during the SSL handshake. This could compromise intra-cluster communication using a man-in-the-middle attack.

CVSS3: 7.4
0%
Низкий
почти 6 лет назад
github логотип
GHSA-wc4x-4gm2-74j8

Apache Geode SSL endpoint verification vulnerability

CVSS3: 7.4
0%
Низкий
почти 4 года назад

Уязвимостей на страницу