Check: 2016-B-0087
windows 7 iavm:
2016-B-0087
(in version v1 r32)
Title
Microsoft .NET Framework Information Disclosure Vulnerability (MS16-065) (Cat II impact)
Discussion
Microsoft has released a security bulletin addressing a vulnerability in the TLS/SSL protocol, implemented in the encryption component of Microsoft .NET Framework. To exploit this vulnerability, an attacker would inject unencrypted data into the target secure channel and then performs a man-in-the-middle (MiTM) attack between the targeted client and a legitimate server. If successfully exploited, this vulnerability would allow an attacker to decrypt encrypted SSL/TLS traffic.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-68781
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |