Security Advisory

CVE-2020-14254

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-12-16 14:07:42
Last updated 2024-08-04 12:39:36
Assigner HCL
CVSS score not scored
State PUBLISHED

Description

TLS-RSA cipher suites are not disabled in HCL BigFix Inventory up to v10.0.2. If TLS 2.0 and secure ciphers are not enabled then an attacker can passively record traffic and later decrypt it.