Cisco Jabber on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and modify the client-server data stream via a crafted certificate, aka Bug ID CSCug30280.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1228 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2022-10-03T16:14:48
Updated: 2022-10-03T16:14:48
Reserved: 2022-10-03T00:00:00
Link: CVE-2013-1228
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-09-06T11:15:37.223
Modified: 2014-03-05T19:00:33.040
Link: CVE-2013-1228
JSON object: View
Redhat Information
No data.
CWE