CVE-2013-2191
08.02.2014, 00:55
python-bugzilla before 0.9.0 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof Bugzilla servers via a crafted certificate.Enginsight
Vendor | Product | Version |
---|---|---|
python_bugzilla_project | python-bugzilla | 𝑥 ≤ 0.8.0 |
python_bugzilla_project | python-bugzilla | 0.6.0 |
python_bugzilla_project | python-bugzilla | 0.6.1 |
python_bugzilla_project | python-bugzilla | 0.6.2 |
python_bugzilla_project | python-bugzilla | 0.7.0 |
opensuse | opensuse | 11.4 |
opensuse | opensuse | 12.2 |
opensuse | opensuse | 12.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References