CVE-2018-15784

Dell Networking OS10 versions prior to 10.4.3.0 contain a vulnerability in the Phone Home feature which does not properly validate the server's certificate authority during TLS handshake. Use of an invalid or malicious certificate could potentially allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:o:dell:networking_os10:*:*:*:*:*:*:*:*

Information

Published : 2019-01-18 14:29

Updated : 2019-10-09 16:35


NVD link : CVE-2018-15784

Mitre link : CVE-2018-15784


JSON object : View

CWE
CWE-295

Improper Certificate Validation

Advertisement

dedicated server usa

Products Affected

dell

  • networking_os10