CVE-2010-2306
16.06.2010, 20:30
The default installation of Sourcefire 3D Sensor 1000, 2000, and 9900; and Defense Center 1000; uses the same static, private SSL keys for multiple devices and installations, which allows remote attackers to decrypt SSL traffic via a man-in-the-middle (MITM) attack.Enginsight
Vendor | Product | Version |
---|---|---|
sourcefire | 3d1000 | * |
sourcefire | 3d2000 | * |
sourcefire | 3d9900 | * |
sourcefire | dc1000 | * |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References