Description
The default SSL cipher configuration in Apache Tomcat 4.1.28 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.17 uses certain insecure ciphers, including the anonymous cipher, which allows remote attackers to obtain sensitive information or have other, unspecified impacts.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2016-3505 Vulnerability (CVE-2016-3505)
WordPress Plugin Vitamin Multiple Arbitrary File Disclosure Vulnerabilities (1.0.0)
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-3732)
WordPress Plugin wp-publications Local File Inclusion (0.0)
WordPress Plugin Help Desk & Knowledgebase Software PHP Object Injection (1.3.11)