Security Advisory

CVE-2016-1115

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-05-11 01:00:00
Last updated 2024-08-05 22:48:13
Assigner adobe
CVSS score not scored
State PUBLISHED

Description

Adobe ColdFusion 10 before Update 19, 11 before Update 8, and 2016 before Update 1 mishandles wildcards in name fields of X.509 certificates, which might allow man-in-the-middle attackers to spoof servers via a crafted certificate.