Quantcast
Channel: Exchange Server 2013 - Setup, Deployment, Updates, and Migration forum
Viewing all articles
Browse latest Browse all 7129

BEAST and POODLE vulnerabilities

$
0
0

I have a new install of Server 2012R2 and Exchange 2013 (no edge server roll installed and nothing else installed on this machine). We are failing our PCI compliance testing with the following failures:

osCommerce allowscross-site scripting

CVE-2003-1219

server is susceptible toBEAST attack

CVE-2011-3389

server is susceptible to SSL POODLE attack

CVE-2014-3566

I have disabled the reg key for SSL 3.0 server, and I am still failing the POODLE vuln.  Can anyone help me with getting past these issues?


Viewing all articles
Browse latest Browse all 7129

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>