search cancel

Vulnerability CVE-2016-8635

book

Article ID: 215240

calendar_today

Updated On:

Products

DX Application Performance Management

Issue/Introduction

Vulnerability found at braodcom portal, below the details:

https://nvd.nist.gov/vuln/detail/CVE-2016-8635


TLS_DHE (DH) and TLS_ECDHE (DH) insecure
URL affected: https://axa.dxi-na1.saas.broadcom.com/

 

Environment

Release : 20.2

Component : CA DOI Foundations

Resolution

These 2 ciphers are not being used and no exposure to the customer exists because we do not support IE11 as a browser client. So, mainly a cleanup task from the frontend routers to remove the cipher.
The production update to remove these 2 ciphers was rollout on 14Th May 2021. 

 

Attachments