CVE-2014-4630 in Dell and EMC Products
Published on December 30, 2014
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack."
Products Associated with CVE-2014-4630
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2014-4630 are published in these products:
Exploit Probability
EPSS
0.25%
Percentile
47.95%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.