Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30706
HistoryMay 27, 2021 - 6:04 a.m.

Insecure Certificate Validation

2021-05-2706:04:45
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.001 Low

EPSS

Percentile

38.8%

github.com/pion/webrtc is using an insecure certificate validation. A failed DTLS certificate verification does not fail data channel communication during PeerConnection handshake. The attack requires the attacker to have knowledge of the ICE password.

0.001 Low

EPSS

Percentile

38.8%

Related for VERACODE:30706