Unverified X.509 Certificates in Heimdal Thor Agent 2.5.17x before 2.5.173 Vulnerability

Unverified X.509 Certificates in Heimdal Thor Agent 2.5.17x before 2.5.173 Vulnerability

CVE-2019-8351 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:P/A:N

Heimdal Thor Agent 2.5.17x before 2.5.173 does not verify X.509 certificates from TLS servers, which allows remote attackers to spoof servers and obtain sensitive information via a crafted certificate.

Learn more about our Cis Benchmark Audit For Server Software.