Certificate Authority Basic Constraints Validation Vulnerability in Cisco IronPort Web Security Appliance 7.5 and earlier

Certificate Authority Basic Constraints Validation Vulnerability in Cisco IronPort Web Security Appliance 7.5 and earlier

CVE-2012-1326 · HIGH Severity

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

Cisco IronPort Web Security Appliance up to and including 7.5 does not validate the basic constraints of the certificate authority which could lead to MITM attacks

Learn more about our Web App Pen Testing.