AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1094

MEDIUM · CVSS 4.3 EPSS 1.00%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-03-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-1094
Severity
MEDIUM
CVSS
4.3
EPSS
1.00%

Original NVD Description

kio/kio/tcpslavebase.cpp in KDE KSSL in kdelibs before 4.6.1 does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a certificate issued by a legitimate Certification Authority for an IP address, a different vulnerability than CVE-2009-2702.