cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7687
Views
0
Helpful
3
Replies

Need fix for CVE-2004-2761

rahul kale
Level 1
Level 1

Tenable says Switches and WLCs are vulnerable for CVE-2004-2761.SSL Certificate Signed Using Weak Hashing Algorithm.

Please help with fix

3 Replies 3

balaji.bandi
Hall of Fame
Hall of Fame

what switch model and WLC example : what code they running ?

the CVE might be old

MD5 in the signature algorithm of an X.509 certificate  -

Look at the bug : (see some workaround suggested way back 2009)

https://bst.cisco.com/bugsearch/bug/CSCvn60539

also look at below thread :

https://community.cisco.com/t5/network-security/https-scan-reveals/td-p/1628713

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Leo Laohoo
Hall of Fame
Hall of Fame

@rahul kale wrote:
CVE-2004-2761

I have purposely highlighted the CVE number to demonstrate that this CVE was discovered back in 2004.  

If there are equipment(s) that were purchased back then, there is no other fix other than a physical replacement.  

I have same problem with Switch C9300-24UX-E is vulnerable for CVE-2004-2761.SSL Certificate Signed Using Weak Hashing Algorithm.

Please Suggest