CVE-2012-0732 Information
Feb 14, 2021
cve
Description
The Enterprise Console client in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not verify X.509 certificates from SSL servers which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Reference
http://secunia.com/advisories/48967 http://secunia.com/advisories/48968 http://www.ibm.com/support/docview.wss?uid=swg21592188 http://www.securityfocus.com/bid/53247 https://exchange.xforce.ibmcloud.com/vulnerabilities/74389
Share on: