← Volver a CVEs
CVE-2013-4062
N/ADescripcion
IBM Rational Policy Tester 8.5 before 8.5.0.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof Jazz Team servers, obtain sensitive information, and modify the client-server data stream via a crafted certificate.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado9/9/2013
Ultima modificacion4/29/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
ibm:rational_policy_tester
Debilidades (CWE)
CWE-310
Referencias
http://www-01.ibm.com/support/docview.wss?uid=swg21648481(psirt@us.ibm.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/86586(psirt@us.ibm.com)
http://www-01.ibm.com/support/docview.wss?uid=swg21648481(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/86586(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.