2009-07-08 15:00:00
mitre
PUBLISHED
Gizmo 3.1.0.79 on Linux does not verify a servers SSL certificate, which allows remote servers to obtain the credentials of arbitrary users via a spoofed certificate.