STARTTLS Downgrade Vulnerability in Cisco Jabber

STARTTLS Downgrade Vulnerability in Cisco Jabber

CVE-2015-6409 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

Cisco Jabber 10.6.x, 11.0.x, and 11.1.x on Windows allows man-in-the-middle attackers to conduct STARTTLS downgrade attacks and trigger cleartext XMPP sessions via unspecified vectors, aka Bug ID CSCuw87419.

Learn more about our Web Application Penetration Testing UK.