CyberSec.Space Logo
CVEブラウザに戻る

CVE-2016-10931

HIGH
8.1
CVSS Severity Score
EPSS Score0.0030%
EPSS Percentile2.06th
Published2019年8月26日
Last Modified2024年11月21日

Vulnerability Description

An issue was discovered in the openssl crate before 0.9.0 for Rust. There is an SSL/TLS man-in-the-middle vulnerability because certificate verification is off by default and there is no API for hostname verification.

Affected Platforms (CPE)

📦
Rust Openssl Project

Rust Openssl

< 0.9.0

References & Advisories

関連する脆弱性情報