Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:10821
HistoryJan 15, 2019 - 8:52 a.m.

Man-in-the-Middle (MitM)

2019-01-1508:52:39
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

55.7%

qt is vulnerable to man-in-the-middle (MitM) attacks. The vulnerability exists as QSslSocket in Qt before 4.7.0-rc1 recognizes a wildcard IP address in the subject’s Common Name field of an X.509 certificate, which might allow man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.