Vulnerabilities (CVE)

Filtered by vendor Midnight-commander Subscribe
Filtered by product Midnight Commander
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-36370 1 Midnight-commander 1 Midnight Commander 2021-09-08 5.0 MEDIUM 7.5 HIGH
An issue was discovered in Midnight Commander through 4.8.26. When establishing an SFTP connection, the fingerprint of the server is neither checked nor displayed. As a result, a user connects to the server without the ability to verify its authenticity.