Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
libgdata before 0.10.2 and 0.11.x before 0.11.1 does not validate SSL certificates, which allows remote attackers to obtain user names and passwords via a man-in-the-middle (MITM) attack with a spoofed certificate.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Libgdata欺骗攻击漏洞
Vulnerability Description
Libgdata 0.10.2之前版本和0.11.1之前的0.11.x版本中存在欺骗攻击漏洞,该漏洞源于当访问在线服务APIs时,程序库未验证SSL证书的有效性。攻击者可利用该漏洞欺骗有效服务器,进而执行进一步攻击(例如中间人(MitM)攻击)。
CVSS Information
N/A
Vulnerability Type
N/A