Vulnérabilité · NVD
CVE-2012-6399
N/A
EN Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, aka Bug ID CSCud94176.
EPSS
0.53%
exploit très peu probable
percentile 41.8%
Apps suivies liées à cette CVE
Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.
-
Affecté — Corrigé — Dernière suivie — indéterminé
Configurations CPE vulnérables (1)
| Vendor | Produit | Plateforme | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| cisco |
webex iOS
|
iOS | — | cpe:2.3:a:cisco:webex:4.1:-:*:*:*:iphone_os:*:* |