Check: 2015-B-0063
Windows 2012 IAVM:
2015-B-0063
(in version v1 r30)
Title
Stunnel Authentication Bypass Vulnerability (Cat I impact)
Discussion
Stunnel has released an advisory to address an authentication bypass vulnerability in the Stunnel application. Stunnel is an application used to provide a universal TLS/SSL tunneling service. Stunnel uses OpenSSL libraries for cryptography. To exploit this vulnerability, an attacker would send a malicious request to the affected system. If successfully exploited, this vulnerability would allow an attacker to bypass the authentication mechanism.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-60757
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |