Security Advisory
CVE-2014-8918
5.8
Vulnerability Description
IBM Security AppScan Standard 8.x and 9.x before 9.0.1.1 FP1 does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Published Date
February 2, 2015
Official Source
NIST NVD Advisory