cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2013-6480,https://securityvulnerability.io/vulnerability/CVE-2013-6480,,"Libcloud 0.12.3 through 0.13.2 does not set the scrub_data parameter for the destroy DigitalOcean API, which allows local users to obtain sensitive information by leveraging a new VM.",Apache,Libcloud,,,0.0004799999878741801,false,,false,false,false,,,false,false,,2014-01-07T18:00:00.000Z,0 CVE-2012-3446,https://securityvulnerability.io/vulnerability/CVE-2012-3446,,"Apache Libcloud before 0.11.1 uses an incorrect regular expression during verification of whether the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate.",Apache,Libcloud,5.9,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2012-11-04T22:00:00.000Z,0 CVE-2010-4340,https://securityvulnerability.io/vulnerability/CVE-2010-4340,,"libcloud before 0.4.1 does not verify SSL certificates for HTTPS connections, which allows remote attackers to spoof certificates and bypass intended access restrictions via a man-in-the-middle (MITM) attack.",Apache,Libcloud,,,0.001069999998435378,false,,false,false,false,,,false,false,,2011-09-12T12:41:00.000Z,0