Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Midori before 0.2.5, when WebKitGTK+ before 1.1.14 or LibSoup before 2.29.91 is used, does not verify X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary https web sites via a crafted server certificate, a related issue to CVE-2010-3312.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Christian_dywan Midori未明站点欺骗漏洞
Vulnerability Description
Midori 是一个跨平台的轻量级Web浏览器,支持Linux及Windows,并使用了基于OpenSearch的搜索框。 Midori 0.2.5之前的版本在WebKitGTK+ 1.1.14之前版本或者LibSoup 2.29.91之前的版本使用时,不能正确验证X.509证书。中间人攻击者可以借助特制的服务器证书欺骗任意https web站点。
CVSS Information
N/A
Vulnerability Type
N/A