CVE-2009-3291

CVE-2009-3291

CVE-2009-3291 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

The php_openssl_apply_verification_policy function in PHP before 5.2.11 does not properly perform certificate validation, which has unknown impact and attack vectors, probably related to an ability to spoof certificates.

Learn more about our Web Application Penetration Testing UK.