CVE

Id
64513  
CVE No.
CVE-2013-4566  
Status
Candidate  
Description
mod_nss 1.0.8 and earlier, when NSSVerifyClient is set to none for the server/vhost context, does not enforce the NSSVerifyClient setting in the directory context, which allows remote attackers to bypass intended access restrictions.  
Phase
Assigned (20130612)  
Votes
None (candidate not yet proposed)  
Comments