Vulnerability Details CVE-2014-0848
The (1) ssl.conf and (2) httpd.conf files in the Apache HTTP Server component in IBM Netezza Performance Portal 2.0 before 2.0.0.4 have weak SSLCipherSuite values, which makes it easier for remote attackers to defeat cryptographic protection mechanisms via a brute-force attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.7%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2014-0848
-
cpe:2.3:a:ibm:netezza_performance_portal:2.0.0.0
-
cpe:2.3:a:ibm:netezza_performance_portal:2.0.0.1
-
cpe:2.3:a:ibm:netezza_performance_portal:2.0.0.2
-
cpe:2.3:a:ibm:netezza_performance_portal:2.0.0.3