Loading HuntDB...

Domain does not Match SSL Certificate

U
Urban Dictionary
Submitted None
Reported by kittiesscript

Vulnerability Details

Technical details and impact analysis

Man-in-the-Middle
Hi Team, While examining the domains that are in scope for Urban Dictionary, I noticed that https://urbandictionary.net is not currently protected by your SSL certificate. Steps to Reproduce: 1. Open Chrome and copy/paste the following into the search bar: https://www.urbandictionary.net 2. After you hit enter you will be transferred to a page that states: Your connection is not private Attackers might be trying to steal your information from www.urbandictionary.net (for example, passwords, messages, or credit cards). Learn more NET::ERR_CERT_COMMON_NAME_INVALID *Please note that you can also verify this error by visiting: https://www.whynopadlock.com/ and searching for: https://urbandictionary.net. If you do, you will be informed that it is not currently one of your protected domains. Recommended Solution: Add https://urbandictionary.net to your SSL certificate. Hope this helps! kittiesscript ## Impact MITM Attacks - Information sent and received within https://urbandictionary.net is unprotected and it could potentially be stolen, read, or modified by attackers, hackers, and entities with access to internet infrastructure, such as Internet Service Providers (ISPs) and governments.

Report Details

Additional information and metadata

State

Closed

Substate

Informative

Submitted

Weakness

Man-in-the-Middle