The mod_ssl module in Apache 2.0.35 through 2.0.52, when using the "SSLCipherSuite" directive in directory or location context, allows remote clients to bypass intended restrictions by using any cipher suite that is allowed by the virtual host configuration.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-11-02 21:00
Updated : 2021-06-06 04:15
NVD link : CVE-2004-0885
Mitre link : CVE-2004-0885
JSON object : View
CWE
Products Affected
apache
- http_server