Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-6592

Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.8%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2007-6592
  • Apple » Safari » Version: 2
    cpe:2.3:a:apple:safari:2


Contact Us

Shodan ® - All rights reserved