PT-2016-4117 · Ibm · Aix+2
Publicado
2016-07-26
·
Atualizado
2021-08-31
·
CVE-2016-0266
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM AIX versions 5.3, 6.1, 7.1, and 7.2
VIOS version 2.2.x
Description
The issue allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors because the software does not default to the latest TLS version. This makes it easier for remote attackers to use man-in-the-middle techniques.
Recommendations
For IBM AIX versions 5.3, 6.1, 7.1, and 7.2, update the configuration to require the newest version of TLS by default.
For VIOS version 2.2.x, update the configuration to require the newest version of TLS by default.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Aix
Ibm Aix
Vios