CVE-2012-6071
published 2019-11-19CVE-2012-6071: nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
PriorityP336high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
1.31%
67.9th percentile
nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | nusoap | < nusoap 0.7.3-5 (bookworm) | nusoap 0.7.3-5 (bookworm) |
| nusoap | nusoap | — | — |
| nusoap | nusoap | >= 0 < 0.7.3-5 | 0.7.3-5 |
| nusoap | nusoap | >= 0 < 0.7.3-5 | 0.7.3-5 |
| nusoap_project | nusoap | < 0.7.3-5 | 0.7.3-5 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_debian7.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2339-f8x6-mhv4: nuSOAP before 0
ghsa_unreviewed·2022-04-23
CVE-2012-6071 [HIGH] CWE-295 GHSA-2339-f8x6-mhv4: nuSOAP before 0
nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
OSV
CVE-2012-6071: nuSOAP before 0
osv·2019-11-19·CVSS 7.5
CVE-2012-6071 [HIGH] CVE-2012-6071: nuSOAP before 0
nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
Debian
CVE-2012-6071: nusoap - nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
vendor_debian·2012·CVSS 7.5
CVE-2012-6071 [HIGH] CVE-2012-6071: nusoap - nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
Scope: local
bookworm: resolved (fixed in 0.7.3-5)
bullseye: resolved (fixed in 0.7.3-5)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2012/12/27/1http://www.openwall.com/lists/oss-security/2013/01/15/6https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=696707https://security-tracker.debian.org/tracker/CVE-2012-6071http://www.openwall.com/lists/oss-security/2012/12/27/1http://www.openwall.com/lists/oss-security/2013/01/15/6https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=696707https://security-tracker.debian.org/tracker/CVE-2012-6071
2019-11-19
Published