Field Assessment
AI analysis pending.
CVE
CVE-2007-6592
Severity
MEDIUM
CVSS
4.3
EPSS
0.65%
Original Filing — NVD Description
Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site.