#VU50843 Improper Certificate Validation in Stunnel - CVE-2021-20230
Published: February 22, 2021
Stunnel
Stunnel.org
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to improper client certificate validation, when redirect and verifyChain options are used. A remote attacker can bypass implemented security restrictions with a any valid certificated and gain access to sensitive information.