Kingsoft KDrive Personal before 1.21.0.1880 on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
References
Configurations
Information
Published : 2013-11-22 11:55
Updated : 2014-03-05 10:58
NVD link : CVE-2013-5999
Mitre link : CVE-2013-5999
JSON object : View
CWE
CWE-310
Cryptographic Issues
Products Affected
kingsoft
- kdrive