Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In words.protocols.jabber.xmlstream in Twisted through 19.2.1, XMPP support did not verify certificates when used with TLS, allowing an attacker to MITM connections.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Twisted 信任管理问题漏洞
Vulnerability Description
Twisted是一款使用Python语言编写的事件驱动的开源网络引擎。 Twisted 19.2.1及之前版本中的words.protocols.jabber.xmlstream存在安全漏洞,该漏洞源于TLSInitiatingInitializer没有检测证书。攻击者可利用该漏洞进行中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A