VYPR

Mod Nss

by Mod Nss Project

CVEs (3)

  • CVE-2015-5244CriAug 7, 2017
    risk 0.64cvss 9.8epss 0.00

    The NSSCipherSuite option with ciphersuites enabled in mod_nss before 1.0.12 allows remote attackers to bypass application restrictions.

  • CVE-2015-3277HigAug 9, 2017
    risk 0.49cvss 7.5epss 0.00

    The mod_nss module before 1.0.11 in Fedora allows remote attackers to obtain cipher lists due to incorrect parsing of multi-keyword cipherstring.

  • CVE-2013-4566Dec 12, 2013
    risk 0.00cvss epss 0.00

    mod_nss 1.0.8 and earlier, when NSSVerifyClient is set to none for the server/vhost context, does not enforce the NSSVerifyClient setting in the directory context, which allows remote attackers to bypass intended access restrictions.