Internet Explorer 6.0 does not warn users when an expired certificate authority (CA) certificate is submitted to the user and a newer CA certificate is in the user's local repository, which could allow remote attackers to decrypt web sessions via a man-in-the-middle (MITM) attack.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-11-16T07:37:00Z

Updated: 2024-09-17T03:42:55.162Z

Reserved: 2005-11-16T00:00:00Z

Link: CVE-2002-2125

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2002-12-31T05:00:00.000

Modified: 2021-07-23T15:02:59.587

Link: CVE-2002-2125

cve-icon Redhat

No data.