Lucene search

K
cvelistRedhatCVELIST:CVE-2013-7440
HistoryJun 07, 2016 - 6:00 p.m.

CVE-2013-7440

2016-06-0718:00:00
redhat
www.cve.org
8

AI Score

5.5

Confidence

High

EPSS

0.002

Percentile

52.8%

The ssl.match_hostname function in CPython (aka Python) before 2.7.9 and 3.x before 3.3.3 does not properly handle wildcards in hostnames, which might allow man-in-the-middle attackers to spoof servers via a crafted certificate.

AI Score

5.5

Confidence

High

EPSS

0.002

Percentile

52.8%