SagePay Sage Pay Direct Module

CPE Details

SagePay Sage Pay Direct Module
-
2012-11-05
16h53 +00:00
2012-11-13
22h50 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:sagepay:sage_pay_direct_module:-:*:*:*:*:*:*:*

Informations

Vendor

sagepay

Product

sage_pay_direct_module

Version

-

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2012-5792 2012-11-04 21h00 +00:00 The Sage Pay Direct module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.
5.8