Описание
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2.1.10-5ubuntu1 |
| lucid | ignored | end of life |
| precise | released | 2.1.10-2ubuntu1.2 |
| quantal | released | 2.1.10-3ubuntu0.1 |
| raring | released | 2.1.10-4ubuntu0.1 |
| saucy | released | 2.1.10-5ubuntu1 |
| upstream | released | 2.1.12, 2.1.10-4+deb7u1, 2.1.5-3+squeeze2 |
Показывать по
10
EPSS
Процентиль: 74%
0.01595
Низкий
4.3 Medium
CVSS2
Связанные уязвимости
nvd
почти 13 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
debian
почти 13 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) we ...
github
больше 4 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
EPSS
Процентиль: 74%
0.01595
Низкий
4.3 Medium
CVSS2