Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Safari 域名欺骗漏洞
Vulnerability Description
在Apple Safari 2中,当一个用户在DN field的CN域名接受一个SSL服务证明时, Mozilla网络浏览器默认接受subjectAltName:dNSName fields的所有域名。 远程攻击者更易于欺骗用户接受一个欺骗性网点的非法证明。
CVSS Information
N/A
Vulnerability Type
N/A