CVE-2013-6807

Currently unrated

Key Information:

Vendor
Opentext
Vendor
CVE Published:
19 May 2014

Summary

The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows man-in-the-middle attackers to bypass server certificate validation, redirect a connection, and obtain sensitive information via crafted responses.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.