Description
The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows man-in-the-middle attackers to bypass server certificate validation, redirect a connection, and obtain sensitive information via crafted responses.
References (1)
Core 1
Core References
Scores
EPSS
0.0016
EPSS Percentile
36.3%
Details
CWE
CWE-310
Status
published
Products (1)
opentext/exceed_ondemand
8.0
Published
May 19, 2014
Tracked Since
Feb 18, 2026