Логотип exploitDog
bind:CVE-2025-41255
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-41255

Количество 2

Количество 2

nvd логотип

CVE-2025-41255

8 месяцев назад

Cyberduck and Mountain Duck improperly handle TLS certificate pinning for untrusted certificates (e.g., self-signed), unnecessarily installing it to the Windows Certificate Store of the current user without any restrictions. This issue affects Cyberduck through 9.1.6 and Mountain Duck through 4.17.5.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-wxfx-h38m-cr9x

8 месяцев назад

Cyberduck and Mountain Duck improperly handle TLS certificate pinning for untrusted certificates (e.g., self-signed), unnecessarily installing it to the Windows Certificate Store of the current user without any restrictions. This issue affects Cyberduck through 9.1.6 and Mountain Duck through 4.17.5.

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-41255

Cyberduck and Mountain Duck improperly handle TLS certificate pinning for untrusted certificates (e.g., self-signed), unnecessarily installing it to the Windows Certificate Store of the current user without any restrictions. This issue affects Cyberduck through 9.1.6 and Mountain Duck through 4.17.5.

CVSS3: 8
0%
Низкий
8 месяцев назад
github логотип
GHSA-wxfx-h38m-cr9x

Cyberduck and Mountain Duck improperly handle TLS certificate pinning for untrusted certificates (e.g., self-signed), unnecessarily installing it to the Windows Certificate Store of the current user without any restrictions. This issue affects Cyberduck through 9.1.6 and Mountain Duck through 4.17.5.

CVSS3: 8
0%
Низкий
8 месяцев назад

Уязвимостей на страницу