Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

TLS Server Supports TLS version 1.0 #106

Open
zisanyavuz opened this issue Nov 6, 2024 · 0 comments
Open

TLS Server Supports TLS version 1.0 #106

zisanyavuz opened this issue Nov 6, 2024 · 0 comments
Assignees
Labels
bug Something isn't working KONDUKTO

Comments

@zisanyavuz
Copy link

A high severity infra vulnerability has been discovered.

Infra Group: test2,test79 - test

Scanner Name: rapid7infra

Target: 172.67.159.157 : 443

Service: HTTPS

Exploitable: false

Protocol: tcp


Proof: Successfully connected over TLSv1.0

Tool Description: The PCI (Payment Card Industry) Data Security Standard requires a minimum of TLS v1.1 and recommends TLS v1.2. In addition, FIPS 140-2 standard requires a minimum of TLS v1.1 and recommends TLS v1.2..
CVSS2 score: 4.300000
Service Name:
Port:
Protocol:
Proof:
Service Name: HTTPS
Port: 443
Protocol: tcp
Proof: Successfully connected over TLSv1.0

Kondukto Link: https://9a4f-104-155-30-65.ngrok-free.app/projects/6703db4e0fadccdc7e5dfc4c/vulns/infra?page=1&perPage=15&id=in:672b2208b6c9a7516937c083
Deeplink: https://10.20.104.26:3780//vulnerability/vuln-summary.jsp?vulnid=tlsv1_0-enabled

@zisanyavuz zisanyavuz added bug Something isn't working KONDUKTO labels Nov 6, 2024
@zisanyavuz zisanyavuz self-assigned this Nov 6, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working KONDUKTO
Projects
None yet
Development

No branches or pull requests

1 participant