Vulnerability Description
Heimdal Thor Agent 2.5.17x before 2.5.173 does not verify X.509 certificates from TLS servers, which allows remote attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Heimdalsecurity | Thor | 2.5.170 |
Related Weaknesses (CWE)
References
- https://support.heimdalsecurity.com/hc/en-us/articles/360001084158-Release-2-5-1Vendor Advisory
- https://support.heimdalsecurity.com/hc/en-us/articles/360001084158-Release-2-5-1Vendor Advisory
FAQ
What is CVE-2019-8351?
CVE-2019-8351 is a vulnerability with a CVSS score of 9.1 (CRITICAL). Heimdal Thor Agent 2.5.17x before 2.5.173 does not verify X.509 certificates from TLS servers, which allows remote attackers to spoof servers and obtain sensitive information via a crafted certificate...
How severe is CVE-2019-8351?
CVE-2019-8351 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-8351?
Check the references section above for vendor advisories and patch information. Affected products include: Heimdalsecurity Thor.