Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The default configuration on OpenSSL before 0.9.8 uses MD5 for creating message digests instead of a more cryptographically strong algorithm, which makes it easier for remote attackers to forge certificates with a valid certificate authority signature.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
openssl证书伪造漏洞
Vulnerability Description
SSL protocol是美国网景(Netscape)公司研发的安全套接层协议(Secure Socket Layer)的缩写,为互联网通信提供安全及数据完整性保障。 OpenSSL 0.9.8版本之前的默认配置使用MD5创建消息摘要,而非使用强加密算法,从而使远程攻击者更容易使用有效的证书认证机构的签名来伪造证书。
CVSS Information
N/A
Vulnerability Type
N/A