Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-4545

cURL and libcurl 7.18.0 through 7.32.0, when built with OpenSSL, disables the certificate CN and SAN name field verification (CURLOPT_SSL_VERIFYHOST) when the digital signature verification (CURLOPT_SSL_VERIFYPEER) is disabled, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.0%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2013-4545
  • Haxx » Curl » Version: 7.18.0
    cpe:2.3:a:haxx:curl:7.18.0
  • Haxx » Curl » Version: 7.18.1
    cpe:2.3:a:haxx:curl:7.18.1
  • Haxx » Curl » Version: 7.18.2
    cpe:2.3:a:haxx:curl:7.18.2
  • Haxx » Curl » Version: 7.19.0
    cpe:2.3:a:haxx:curl:7.19.0
  • Haxx » Curl » Version: 7.19.1
    cpe:2.3:a:haxx:curl:7.19.1
  • Haxx » Curl » Version: 7.19.2
    cpe:2.3:a:haxx:curl:7.19.2
  • Haxx » Curl » Version: 7.19.3
    cpe:2.3:a:haxx:curl:7.19.3
  • Haxx » Curl » Version: 7.19.4
    cpe:2.3:a:haxx:curl:7.19.4
  • Haxx » Curl » Version: 7.19.5
    cpe:2.3:a:haxx:curl:7.19.5
  • Haxx » Curl » Version: 7.19.6
    cpe:2.3:a:haxx:curl:7.19.6
  • Haxx » Curl » Version: 7.19.7
    cpe:2.3:a:haxx:curl:7.19.7
  • Haxx » Curl » Version: 7.20.0
    cpe:2.3:a:haxx:curl:7.20.0
  • Haxx » Curl » Version: 7.20.1
    cpe:2.3:a:haxx:curl:7.20.1
  • Haxx » Curl » Version: 7.21.0
    cpe:2.3:a:haxx:curl:7.21.0
  • Haxx » Curl » Version: 7.21.1
    cpe:2.3:a:haxx:curl:7.21.1
  • Haxx » Curl » Version: 7.21.2
    cpe:2.3:a:haxx:curl:7.21.2
  • Haxx » Curl » Version: 7.21.3
    cpe:2.3:a:haxx:curl:7.21.3
  • Haxx » Curl » Version: 7.21.4
    cpe:2.3:a:haxx:curl:7.21.4
  • Haxx » Curl » Version: 7.21.5
    cpe:2.3:a:haxx:curl:7.21.5
  • Haxx » Curl » Version: 7.21.6
    cpe:2.3:a:haxx:curl:7.21.6
  • Haxx » Curl » Version: 7.21.7
    cpe:2.3:a:haxx:curl:7.21.7
  • Haxx » Curl » Version: 7.22.0
    cpe:2.3:a:haxx:curl:7.22.0
  • Haxx » Curl » Version: 7.23.0
    cpe:2.3:a:haxx:curl:7.23.0
  • Haxx » Curl » Version: 7.23.1
    cpe:2.3:a:haxx:curl:7.23.1
  • Haxx » Curl » Version: 7.24.0
    cpe:2.3:a:haxx:curl:7.24.0
  • Haxx » Curl » Version: 7.25.0
    cpe:2.3:a:haxx:curl:7.25.0
  • Haxx » Curl » Version: 7.26.0
    cpe:2.3:a:haxx:curl:7.26.0
  • Haxx » Curl » Version: 7.27.0
    cpe:2.3:a:haxx:curl:7.27.0
  • Haxx » Curl » Version: 7.28.0
    cpe:2.3:a:haxx:curl:7.28.0
  • Haxx » Curl » Version: 7.28.1
    cpe:2.3:a:haxx:curl:7.28.1
  • Haxx » Curl » Version: 7.29.0
    cpe:2.3:a:haxx:curl:7.29.0
  • Haxx » Curl » Version: 7.30.0
    cpe:2.3:a:haxx:curl:7.30.0
  • Haxx » Curl » Version: 7.31.0
    cpe:2.3:a:haxx:curl:7.31.0
  • Haxx » Curl » Version: 7.32.0
    cpe:2.3:a:haxx:curl:7.32.0
  • Haxx » Libcurl » Version: 7.18.0
    cpe:2.3:a:haxx:libcurl:7.18.0
  • Haxx » Libcurl » Version: 7.18.1
    cpe:2.3:a:haxx:libcurl:7.18.1
  • Haxx » Libcurl » Version: 7.18.2
    cpe:2.3:a:haxx:libcurl:7.18.2
  • Haxx » Libcurl » Version: 7.19.0
    cpe:2.3:a:haxx:libcurl:7.19.0
  • Haxx » Libcurl » Version: 7.19.1
    cpe:2.3:a:haxx:libcurl:7.19.1
  • Haxx » Libcurl » Version: 7.19.2
    cpe:2.3:a:haxx:libcurl:7.19.2
  • Haxx » Libcurl » Version: 7.19.3
    cpe:2.3:a:haxx:libcurl:7.19.3
  • Haxx » Libcurl » Version: 7.19.4
    cpe:2.3:a:haxx:libcurl:7.19.4
  • Haxx » Libcurl » Version: 7.19.5
    cpe:2.3:a:haxx:libcurl:7.19.5
  • Haxx » Libcurl » Version: 7.19.6
    cpe:2.3:a:haxx:libcurl:7.19.6
  • Haxx » Libcurl » Version: 7.19.7
    cpe:2.3:a:haxx:libcurl:7.19.7
  • Haxx » Libcurl » Version: 7.20.0
    cpe:2.3:a:haxx:libcurl:7.20.0
  • Haxx » Libcurl » Version: 7.20.1
    cpe:2.3:a:haxx:libcurl:7.20.1
  • Haxx » Libcurl » Version: 7.21.0
    cpe:2.3:a:haxx:libcurl:7.21.0
  • Haxx » Libcurl » Version: 7.21.1
    cpe:2.3:a:haxx:libcurl:7.21.1
  • Haxx » Libcurl » Version: 7.21.2
    cpe:2.3:a:haxx:libcurl:7.21.2
  • Haxx » Libcurl » Version: 7.21.3
    cpe:2.3:a:haxx:libcurl:7.21.3
  • Haxx » Libcurl » Version: 7.21.4
    cpe:2.3:a:haxx:libcurl:7.21.4
  • Haxx » Libcurl » Version: 7.21.5
    cpe:2.3:a:haxx:libcurl:7.21.5
  • Haxx » Libcurl » Version: 7.21.6
    cpe:2.3:a:haxx:libcurl:7.21.6
  • Haxx » Libcurl » Version: 7.21.7
    cpe:2.3:a:haxx:libcurl:7.21.7
  • Haxx » Libcurl » Version: 7.22.0
    cpe:2.3:a:haxx:libcurl:7.22.0
  • Haxx » Libcurl » Version: 7.23.0
    cpe:2.3:a:haxx:libcurl:7.23.0
  • Haxx » Libcurl » Version: 7.23.1
    cpe:2.3:a:haxx:libcurl:7.23.1
  • Haxx » Libcurl » Version: 7.24.0
    cpe:2.3:a:haxx:libcurl:7.24.0
  • Haxx » Libcurl » Version: 7.25.0
    cpe:2.3:a:haxx:libcurl:7.25.0
  • Haxx » Libcurl » Version: 7.26.0
    cpe:2.3:a:haxx:libcurl:7.26.0
  • Haxx » Libcurl » Version: 7.27.0
    cpe:2.3:a:haxx:libcurl:7.27.0
  • Haxx » Libcurl » Version: 7.28.0
    cpe:2.3:a:haxx:libcurl:7.28.0
  • Haxx » Libcurl » Version: 7.28.1
    cpe:2.3:a:haxx:libcurl:7.28.1
  • Haxx » Libcurl » Version: 7.29.0
    cpe:2.3:a:haxx:libcurl:7.29.0
  • Haxx » Libcurl » Version: 7.30.0
    cpe:2.3:a:haxx:libcurl:7.30.0
  • Haxx » Libcurl » Version: 7.31.0
    cpe:2.3:a:haxx:libcurl:7.31.0
  • Haxx » Libcurl » Version: 7.32.0
    cpe:2.3:a:haxx:libcurl:7.32.0


Contact Us

Shodan ® - All rights reserved