Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-3230

Опубликовано: 29 окт. 2015
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not enforce the nsSSL3Ciphers preference when creating an sslSocket, which allows remote attackers to have unspecified impact by requesting to use a disabled cipher.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:fedoraproject:389_directory_server:*:*:*:*:*:*:*:*
Версия до 1.3.3.10 (включая)

EPSS

Процентиль: 69%
0.00606
Низкий

7.5 High

CVSS2

Дефекты

CWE-254

Связанные уязвимости

ubuntu
больше 10 лет назад

389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not enforce the nsSSL3Ciphers preference when creating an sslSocket, which allows remote attackers to have unspecified impact by requesting to use a disabled cipher.

redhat
больше 10 лет назад

389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not enforce the nsSSL3Ciphers preference when creating an sslSocket, which allows remote attackers to have unspecified impact by requesting to use a disabled cipher.

debian
больше 10 лет назад

389 Directory Server (formerly Fedora Directory Server) before 1.3.3.1 ...

github
больше 3 лет назад

389 Directory Server (formerly Fedora Directory Server) before 1.3.3.12 does not enforce the nsSSL3Ciphers preference when creating an sslSocket, which allows remote attackers to have unspecified impact by requesting to use a disabled cipher.

EPSS

Процентиль: 69%
0.00606
Низкий

7.5 High

CVSS2

Дефекты

CWE-254