Vulnerabilities
Vulnerable Software
Hashicorp:  >> Consul  >> 1.4.3  Security Vulnerabilities
HashiCorp Consul 1.4.3 lacks server hostname verification for agent-to-agent TLS communication. In other words, the product behaves as if verify_server_hostname were set to false, even when it is actually set to true. This is fixed in 1.4.4.
CVSS Score
7.4
EPSS Score
0.002
Published
2019-03-26


Contact Us

Shodan ® - All rights reserved