积极预防 及时发现
快速响应 力保恢复
PGP Corporate Desktop 7.1之前的版本、Personal Security 7...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20011016 CVE编号:CVE-2001-1016 安全级别:中 漏洞中文描述: PGP Corporate Desktop 7.1之前的版本、Personal Security 7.0.3之前的版本、Freeware 7.0.3之前的版本和E-Business Server 7.1之前的版本在无效的userID用来标记一条消息时不能完全的显示,这可能允许攻击者通过向一个已经被第三方标记的密钥增加第二个无效的用户ID来使得用户相信文件已经被可信的第三方标记,参看"PGPsdk Key Validity"漏洞。 漏洞英文描述: PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7.1 does not properly display when invalid userID's are used to sign a message, which could allow an attacker to make the user believe that the third-party to mark a sign, reference the "PGPsdk Key Validity" 漏洞参考: 系统类型:其他 漏洞类型:其他