CVE-2013-6807

Opentext Exceed Ondemand - Cryptographic Issue

Title source: rule
STIX 2.1

Description

The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows man-in-the-middle attackers to bypass server certificate validation, redirect a connection, and obtain sensitive information via crafted responses.

References (1)

Core 1
Core References

Scores

EPSS 0.0016
EPSS Percentile 36.3%

Details

CWE
CWE-310
Status published
Products (1)
opentext/exceed_ondemand 8.0
Published May 19, 2014
Tracked Since Feb 18, 2026