CVE-2020-17514

Apache Fineract prior to 1.5.0 disables HTTPS hostname verification in ProcessorHelper in the configureClient method. Under typical deployments, a man in the middle attack could be successful.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:fineract:*:*:*:*:*:*:*:*

Information

Published : 2021-05-27 05:15

Updated : 2021-06-07 11:05


NVD link : CVE-2020-17514

Mitre link : CVE-2020-17514


JSON object : View

Advertisement

dedicated server usa

Products Affected

apache

  • fineract