NVD

Id
80775  
Name
CVE-2002-1824  
Description
Microsoft Internet Explorer 6.0, when handling an expired CA-CERT in a webserver"s certificate chain during a SSL/TLS handshake, does not prompt the user before searching for and finding a newer certificate, which may allow attackers to perform a man-in-the-middle attack. NOTE: it is not clear whether this poses a vulnerability.  
Reject
 
CVSS Version
2  
CVSS Score
5  
Severity
Medium  
CVSS Base Score
5  
CVSS Impact Subscore
2.9  
CVSS Exploit Subscore
10  
CVSS Vector
(AV:N/AC:L/Au:N/C:N/I:P/A:N)  
Pub Date
2017-01-05  
Published
2002-12-31  
Modified Date
2008-09-05  
Seq
2002-1824  

Actions