CVE-2018-21246
15.06.2020, 17:15
Caddy before 0.10.13 mishandles TLS client authentication, as demonstrated by an authentication bypass caused by the lack of the StrictHostMatching mode.Enginsight
| Vendor | Product | Version |
|---|---|---|
| caddyserver | caddy | 𝑥 < 0.10.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration