Security Advisory
CVE-2008-5124
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
JSCAPE Secure FTP Applet 4.8.0 and earlier does not ask the user to verify a new or mismatched SSH host key, which makes it easier for remote attackers to perform man-in-the-middle attacks.