Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 does not verify the certificate name in an X.509 certificate during WebLaunch of IPsec, which allows man-in-the-middle attackers to spoof servers via a crafted certificate, aka Bug ID CSCtz29470.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco AnyConnect Secure Mobility Client 证书欺骗漏洞
Vulnerability Description
Cisco AnyConnect Secure Mobility是一个安全的企业移动解决方案。 Cisco AnyConnect Secure Mobility Client 3.0.08057之前的3.0版本中存在漏洞,该漏洞源于未验证IPsec中的WebLaunch的X.509证书的证书名称。中间人攻击者可利用该漏洞通过特制的证书欺骗服务器。
CVSS Information
N/A
Vulnerability Type
N/A