Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36909
HistorySep 02, 2022 - 5:58 a.m.

Man-in-the-Middle (MitM)

2022-09-0205:58:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
python-scciclient
vulnerability
man-in-the-middle
attack
https
certifications

0.001 Low

EPSS

Percentile

41.7%

python-scciclient is vulnerable to man-in-the-middle (MitM) attacks. The vulnerability exists because the scci_cmd function of scci.py does not properly verify the HTTPS connection certifications, allowing an attacker to intercept the connection.