CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.8. It may be remotely exploitable.
CVE
CVE-2008-3532
Severity
MEDIUM
CVSS
6.8
EPSS
1.64%
Original NVD Description
The NSS plugin in libpurple in Pidgin 2.4.3 does not verify SSL certificates, which makes it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service.