Summary
The remote host seems to be running an older version of OpenCA.
It is reported that OpenCA versions up to and incluing 0.9.1.6 contains a flaw that may lead an attacker to bypass signature verification of a certificate.
Solution
Upgrade to the newest version of this software
Severity
Classification
-
CVE CVE-2004-0004 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- AlstraSoft AskMe Pro 'forum_answer.php' and 'profile.php' Multiple SQL Injection Vulnerabilities
- Ajax File and Image Manager 'data.php' PHP Code Injection Vulnerability
- A Really Simple Chat Multiple SQL Injection Vulnerabilities
- AproxEngine Multiple Remote Input Validation Vulnerabilities
- artmedic_links5 File Inclusion Vulnerability