6.8
CVSSv2

CVE-2013-6807

Published: 19/05/2014 Updated: 19/05/2014
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows man-in-the-middle malicious users to bypass server certificate validation, redirect a connection, and obtain sensitive information via crafted responses.

Vulnerable Product Search on Vulmon Subscribe to Product

opentext exceed ondemand 8.0

Github Repositories

Exceed OnDemand MITM proof-of-concept

Exceed onDemand (EoD) is a dependable managed application access solution designed for enterprises It offers pixel perfect drawing, low cost scalability and trusted security access over any network connection Vulnerabilities are present in the current version of the software: Product URL: connectivityopentextcom/products/exceed-ondemandaspx Product Name: OpenText E