CVE

Id
10819  
CVE No.
CVE-2004-2393  
Status
Candidate  
Description
Java Secure Socket Extension (JSSE) 1.0.3 through 1.0.3_2 does not properly validate the certificate chain of a client or server, which allows remote attackers to falsely authenticate peers for SSL/TLS.  
Phase
Assigned (20050817)  
Votes
None (candidate not yet proposed)  
Comments