Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0009
Description:Apache-SSL 1.3.28+1.52 and earlier, with SSLVerifyClient set to 1 or 3 and SSLFakeBasicAuth enabled, allows remote attackers to forge a client certificate by using basic authentication with the "one-line DN" of the target user.
Test IDs: 1.3.6.1.4.1.25623.1.0.12046  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0009
BugTraq ID: 9590
http://www.securityfocus.com/bid/9590
Bugtraq: 20040206 Apache-SSL security advisory - apache_1.3.28+ssl_1.52 and prior (Google Search)
http://marc.info/?l=bugtraq&m=107619127531765&w=2
http://lists.grok.org.uk/pipermail/full-disclosure/2004-February/016870.html
http://www.osvdb.org/3877
XForce ISS Database: apachessl-default-password(15065)
https://exchange.xforce.ibmcloud.com/vulnerabilities/15065




© 1998-2025 E-Soft Inc. All rights reserved.