Trojitá CVE-2014-2567 SSL Stripping Vulnerability
BID:66365
Info
Trojitá CVE-2014-2567 SSL Stripping Vulnerability
| Bugtraq ID: | 66365 |
| Class: | Design Error |
| CVE: |
CVE-2014-2567 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 19 2014 12:00AM |
| Updated: | Mar 19 2015 09:16AM |
| Credit: | Arnt Gulbrandsen |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Trojitá CVE-2014-2567 SSL Stripping Vulnerability
Trojitá is prone to an SSL stripping vulnerability.
An attacker can exploit this issue to perform man-in-the-middle attacks and obtain sensitive information. Successful exploits may lead to other attacks.
Trojitá 0.4 and prior versions are vulnerable.
Trojitá is prone to an SSL stripping vulnerability.
An attacker can exploit this issue to perform man-in-the-middle attacks and obtain sensitive information. Successful exploits may lead to other attacks.
Trojitá 0.4 and prior versions are vulnerable.
Exploit / POC
Trojitá CVE-2014-2567 SSL Stripping Vulnerability
An attacker may use readily available tools to exploit this issue.
An attacker may use readily available tools to exploit this issue.
Solution / Fix
Trojitá CVE-2014-2567 SSL Stripping Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Trojitá CVE-2014-2567 SSL Stripping Vulnerability
References:
References: