7.5
CVSSv2

CVE-2002-1183

Published: 11/12/2002 Updated: 12/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Microsoft Windows 98 and Windows NT 4.0 do not properly verify the Basic Constraints of digital certificates, allowing remote malicious users to execute code, aka "New Variant of Certificate Validation Flaw Could Enable Identity Spoofing" (CAN-2002-0862).

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 98

microsoft windows 98se

microsoft windows nt 4.0

Exploits

source: wwwsecurityfocuscom/bid/5410/info A flaw has been reported in the handling of X509 certificates by a number of products, including several web browsers It may be possible for a malicious party to create certificates for arbitrary domains, which will be treated as trusted by the vulnerable browser The flaw lies in the handling ...