Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.104261
Category:Useless services
Title:Deprecated Secure HyperText Transfer Protocol (S-HTTP) Reporting
Summary:This web server supports the deprecated Secure HyperText; Transfer Protocol (S-HTTP), a cryptographic layer that was defined in 1999 by RFC 2660.
Description:Summary:
This web server supports the deprecated Secure HyperText
Transfer Protocol (S-HTTP), a cryptographic layer that was defined in 1999 by RFC 2660.

Solution:
S-HTTP has never been widely implemented and the Hypertext
Transfer Protocol Secure (HTTPS) protocol should be used instead.

As rare or obsolete code is often badly tested, it would be safer to use another server or disable
this layer somehow.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

CopyrightCopyright (C) 2005 Michel Arboi

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.