Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12486
HistoryJan 15, 2019 - 9:17 a.m.

Man-in-the-Middle (MitM)

2019-01-1509:17:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
1

0.001 Low

EPSS

Percentile

48.6%

cloudforms is vulnerable to man-in-the-middle attack. It includes a default SSL/TLS certificate for the web server. This certificate is replaced at install time, however if an attacker were able to man-in-the-middle an administrator while installing the new certificate the attacker could get a copy of the private key uploaded allowing for future attacks.

References

0.001 Low

EPSS

Percentile

48.6%

Related for VERACODE:12486