Psi Common Name SSL Certificate Spoofing Vulnerability
BID:50927
Info
Psi Common Name SSL Certificate Spoofing Vulnerability
| Bugtraq ID: | 50927 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 06 2011 12:00AM |
| Updated: | May 07 2015 05:14PM |
| Credit: | Tim Brown of Nth Dimension. |
| Vulnerable: |
Psi Psi 0.12 |
| Not Vulnerable: | |
Discussion
Psi Common Name SSL Certificate Spoofing Vulnerability
Psi is prone to a security vulnerability that may allow attackers to spoof SSL certificates.
Attackers can exploit this issue to display incorrect SSL certificates. Successful exploits will cause victims to accept the certificates assuming they are from a legitimate site.
Psi is prone to a security vulnerability that may allow attackers to spoof SSL certificates.
Attackers can exploit this issue to display incorrect SSL certificates. Successful exploits will cause victims to accept the certificates assuming they are from a legitimate site.
Exploit / POC
Psi Common Name SSL Certificate Spoofing Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Psi Common Name SSL Certificate Spoofing Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.