AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-1676

HIGH · CVSS 7.5 EPSS 1.07%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-07-07 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2008-1676
Severity
HIGH
CVSS
7.5
EPSS
1.07%

Original NVD Description

Red Hat PKI Common Framework (rhpki-common) in Red Hat Certificate System (aka Certificate Server or RHCS) 7.1 through 7.3, and Netscape Certificate Management System 6.x, does not recognize Certificate Authority profile constraints on Extensions, which might allow remote attackers to bypass intended restrictions and conduct man-in-the-middle attacks by submitting a certificate signing request (CSR) and using the resulting certificate.