Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cyberduck before 4.4.4 on Windows does not properly validate X.509 certificate chains, which allows man-in-the-middle attackers to spoof FTP-SSL servers via a certificate issued by an arbitrary root Certification Authority.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Iterate Cyberduck for Windows 安全漏洞
Vulnerability Description
Iterate Cyberduck for Windows是瑞士Iterate公司的一款基于Windows平台的开源的Ftp和Sftp客户端,它支持快速查找、远程文本编辑等功能。 基于Windows平台的Cyberduck 4.4.4之前的版本中存在安全漏洞,该漏洞源于程序没有正确的验证X.509证书链。远程攻击者可利用该漏洞伪造FTP-SSL服务器,实施中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A