High severity7.5NVD Advisory· Published Aug 20, 2015· Updated May 6, 2026
CVE-2015-0535
CVE-2015-0535
Description
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier do not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a similar issue to CVE-2015-0204.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- seclists.org/bugtraq/2015/Aug/84nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/76377nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.