Description
A flaw was found in the way SSL 3.0 handled padding bytes when decrypting messages encrypted using block ciphers in cipher block chaining (CBC) mode. This flaw allows a man-in-the-middle (MITM) attacker to decrypt a selected byte of a cipher text in as few as 256 tries if they are able to force a victim application to repeatedly send the same data over newly created SSL 3.0 connections.
Remediation
References
Related Vulnerabilities
Apache Tomcat CVE-2018-1304 Vulnerability (CVE-2018-1304)
Oracle HTTP Server Other Vulnerability (CVE-2020-29506)
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (1.5.5)
WordPress 4.7.x Multiple Vulnerabilities (4.7 - 4.7.1)
WordPress Plugin uTubeVideo Gallery Unspecified Vulnerability (2.0.6)