CVE Vulnerabilities

CVE-2014-0848

Published: Mar 26, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The (1) ssl.conf and (2) httpd.conf files in the Apache HTTP Server component in IBM Netezza Performance Portal 2.0 before 2.0.0.4 have weak SSLCipherSuite values, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.

Affected Software

NameVendorStart VersionEnd Version
Netezza_performance_portalIbm2.0.0.0 (including)2.0.0.0 (including)
Netezza_performance_portalIbm2.0.0.1 (including)2.0.0.1 (including)
Netezza_performance_portalIbm2.0.0.2 (including)2.0.0.2 (including)
Netezza_performance_portalIbm2.0.0.3 (including)2.0.0.3 (including)

References