VYPR
Unrated severityNVD Advisory· Published Apr 11, 2003· Updated Apr 16, 2026

CVE-2002-1407

CVE-2002-1407

Description

TinySSL 1.02 and earlier does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-middle attack.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.