SSL Dheat attack vulnerability CVE-2002-20001

Aug 12, 2019
14
2
43
43
In out security scan of Backup Server 3.2-3 we got back that there is an issue on port 8007. It detect CVE-2002-20001.

The vulnerability is based on the following retrieved information from 8007/TCP:

Vulnerable cipher suites with DhKeyExchange algorithms supported by the server:
TLS_DHE_RSA_WITH_AES_128_GCM_SHA256,
TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

Should that be corrected in next update or there is any change needed in configuration?
 
Last edited:
  • Like
Reactions: rgs1187