CVE-2013-1228

Cisco Jabber - Man-in-the-Middle Attack via Unverified X.509 Certificates

Title source: llm
STIX 2.1

Description

Cisco Jabber on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and modify the client-server data stream via a crafted certificate, aka Bug ID CSCug30280.

References (1)

Core 1
Core References

Scores

EPSS 0.0048
EPSS Percentile 38.5%

Details

CWE
CWE-310
Status published
Products (1)
cisco/jabber
Published Sep 06, 2013
Tracked Since Feb 18, 2026