Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2007-1858

Description

The default SSL cipher configuration in Apache Tomcat 4.1.28 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.17 uses certain insecure ciphers, including the anonymous cipher, which allows remote attackers to obtain sensitive information or have other, unspecified impacts.

POC

Reference

- http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx

- http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.html

Github

- https://github.com/84KaliPleXon3/a2sv

- https://github.com/ARPSyndicate/cvemon

- https://github.com/F4RM0X/script_a2sv

- https://github.com/H4CK3RT3CH/a2sv

- https://github.com/Liber-Primus/ARC_Vulnerability_Scanner

- https://github.com/MrE-Fog/a2sv

- https://github.com/Mre11i0t/a2sv

- https://github.com/Pytools786/website-vulnerability-scanner-

- https://github.com/Ruzi79/CyberSecurityLab4

- https://github.com/Sailakshmangoud/Web-Application-Vulnerability-Scanner

- https://github.com/TheRipperJhon/a2sv

- https://github.com/a-s-aromal/ARC_Vulnerability_Scanner

- https://github.com/anthophilee/A2SV--SSL-VUL-Scan

- https://github.com/clic-kbait/A2SV--SSL-VUL-Scan

- https://github.com/clino-mania/A2SV--SSL-VUL-Scan

- https://github.com/coldorb0/SSL-Scanner

- https://github.com/elptakeover/action

- https://github.com/emarexteam/Projes

- https://github.com/emarexteam/WebsiteScannerVulnerability

- https://github.com/fireorb/SSL-Scanner

- https://github.com/fireorb/sslscanner

- https://github.com/hahwul/a2sv

- https://github.com/hashbrown1013/Spaghetti

- https://github.com/mohitrex7/Wap-Recon

- https://github.com/paroteen/SecurEagle

- https://github.com/shenril/Sitadel

- https://github.com/tag888/tag123

- https://github.com/waseemasmaeel/A2sv_Tools