Логотип exploitDog
bind:CVE-2025-41256
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-41256

Количество 2

Количество 2

nvd логотип

CVE-2025-41256

8 месяцев назад

Cyberduck and Mountain Duck improper handle TLS certificate pinning for untrusted certificates (e.g., self-signed), since the certificate fingerprint is stored as SHA-1, although SHA-1 is considered weak. This issue affects Cyberduck: through 9.1.6; Mountain Duck: through 4.17.5.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-qq37-7frg-jxx4

8 месяцев назад

Cyberduck and Mountain Duck improper handle TLS certificate pinning for untrusted certificates (e.g., self-signed), since the certificate fingerprint is stored as SHA-1, although SHA-1 is considered weak. This issue affects Cyberduck: through 9.1.6; Mountain Duck: through 4.17.5.

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-41256

Cyberduck and Mountain Duck improper handle TLS certificate pinning for untrusted certificates (e.g., self-signed), since the certificate fingerprint is stored as SHA-1, although SHA-1 is considered weak. This issue affects Cyberduck: through 9.1.6; Mountain Duck: through 4.17.5.

CVSS3: 7.4
0%
Низкий
8 месяцев назад
github логотип
GHSA-qq37-7frg-jxx4

Cyberduck and Mountain Duck improper handle TLS certificate pinning for untrusted certificates (e.g., self-signed), since the certificate fingerprint is stored as SHA-1, although SHA-1 is considered weak. This issue affects Cyberduck: through 9.1.6; Mountain Duck: through 4.17.5.

CVSS3: 7.4
0%
Низкий
8 месяцев назад

Уязвимостей на страницу