Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7.1 does not properly display when invalid userID's are used to sign a message, which could allow an attacker to make the user believe that the document has been signed by a trusted third party by adding a second, invalid user ID to a key which has already been signed by the third party, aka the "PGPsdk Key Validity Vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PGPsdk密钥漏洞
Vulnerability Description
PGP Corporate Desktop 7.1之前版本,Personal Security 7.0.3之前版本,Freeware 7.0.3之前版本,和E-Business Server 7.1之前版本在无效用户ID签订消息时不能正确显示。攻击者通过增加第二个无效用户ID给第三方签订的密钥,使得用户相信文档已经由信任的第三方签订。也称为“PGPsdk密钥有效漏洞”。
CVSS Information
N/A
Vulnerability Type
N/A