Описание
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2.1.10-5ubuntu1 |
| lucid | ignored | end of life |
| precise | released | 2.1.10-2ubuntu1.2 |
| quantal | released | 2.1.10-3ubuntu0.1 |
| raring | released | 2.1.10-4ubuntu0.1 |
| saucy | released | 2.1.10-5ubuntu1 |
| upstream | released | 2.1.12, 2.1.10-4+deb7u1, 2.1.5-3+squeeze2 |
Показывать по
10
4.3 Medium
CVSS2
Связанные уязвимости
nvd
больше 12 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
debian
больше 12 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) we ...
github
больше 3 лет назад
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
4.3 Medium
CVSS2