CVE-2011-4968: Debian Linux
Medium severity, CVSS 4.8. EPSS: 4% chance of exploitation in the next 30 days.
nginx http proxy module does not verify peer identity of https origin server which could facilitate man-in-the-middle attack (MITM)
Affected products
- Debian Debian Linux: version 8.0 only
- F5 Nginx: version 0.7.61 only; version 0.7.62 only; version 0.7.64 only; version 0.7.65 only; version 0.7.66 only; version 0.8.33 only; …
Published 2019-11-19. Last modified 2026-06-16.