CVE-2020-36363

Severity CVSS v4.0:
Pending analysis
Type:
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Publication date:
12/08/2021
Last modified:
23/08/2021

Description

Amazon AWS CloudFront TLSv1.2_2019 allows TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 and TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, which some entities consider to be weak ciphers.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:amazon:amazon_cloudfront:1.2_2019:*:*:*:*:*:*:*