CVE-2004-0009

Apache-SSL 1.3.28+1.52 and earlier, with SSLVerifyClient set to 1 or 3 and SSLFakeBasicAuth enabled, allows remote attackers to forge a client certificate by using basic authentication with the "one-line DN" of the target user.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:apache-ssl:apache-ssl:*:*:*:*:*:*:*:*

Information

Published : 2004-03-02 21:00

Updated : 2017-10-09 18:30


NVD link : CVE-2004-0009

Mitre link : CVE-2004-0009


JSON object : View

Advertisement

dedicated server usa

Products Affected

apache-ssl

  • apache-ssl