cbcvebase.
CVE-2010-3901
published 2010-10-14

CVE-2010-3901: OpenConnect before 2.25 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary AnyConnect SSL VPN servers…

PriorityP428medium6.4CVSS 2.0
AVNACLAuNCPIPAN
EPSS
0.61%
45.6th percentile
OpenConnect before 2.25 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof arbitrary AnyConnect SSL VPN servers via a crafted server certificate that (1) does not correspond to the server hostname or (2) is presented in circumstances involving a missing --cafile configuration option.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianopenconnect< openconnect 2.25-0.1 (bookworm)openconnect 2.25-0.1 (bookworm)
infradeadopenconnect<= 2.22
infradeadopenconnect
infradeadopenconnect
infradeadopenconnect
infradeadopenconnect
infradeadopenconnect>= 0 < 2.25-0.12.25-0.1
infradeadopenconnect>= 0 < 2.25-0.12.25-0.1
infradeadopenconnect>= 0 < 2.25-0.12.25-0.1
infradeadopenconnect>= 0 < 2.25-0.12.25-0.1

CVSS provenance

nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
osv6.4MEDIUM
vendor_debian6.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.