Medium
CVSS 4.3
Overview
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL cip...
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: