PT-2015-6252 · Stunnel+2 · Stunnel+2
Johan Olofsson
+1
·
Publicado
2015-05-14
·
Atualizado
2024-06-15
·
CVE-2015-3644
CVSS v2.0
5.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Stunnel versions 5.00 through 5.13
Description
The issue allows remote attackers to bypass authentication due to a failure in redirecting client connections to the expected server after the initial connection when the redirect option is used.
Recommendations
For versions 5.00 through 5.13, update to a version that contains a fix for this issue to prevent authentication bypass.
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Alt Linux
Stunnel
Suse