The default installation of Sourcefire 3D Sensor 1000, 2000, and 9900; and Defense Center 1000; uses the same static, private SSL keys for multiple devices and installations, which allows remote attackers to decrypt SSL traffic via a man-in-the-middle (MITM) attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
3d1000 | Sourcefire | * | * |
3d2000 | Sourcefire | * | * |
3d9900 | Sourcefire | * | * |