CVE-2008-2420

CVE-2008-2420

CVE-2008-2420 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

The OCSP functionality in stunnel before 4.24 does not properly search certificate revocation lists (CRL), which allows remote attackers to bypass intended access restrictions by using revoked certificates.

Learn more about our Web Application Penetration Testing UK.