Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11698
HistoryJan 15, 2019 - 9:06 a.m.

Man-in-the-middle Attack

2019-01-1509:06:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

EPSS

0.001

Percentile

49.3%

Network Security Services (NSS) is vulnerable to a man-in-the-middle attack. The attack exists because it fails in handling state transitions for the TLS state machine and skips handshake message, allowing a man-in-the-middle to decrypt all traffic.

References