You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
ssl 2.0
About this tag
The SSL 2.0 tag on WindowsForum.com covers discussions about the deprecated Secure Socket Layer protocol version 2.0, particularly in the context of Microsoft security updates. One notable thread addresses MS15-089, a security update that resolved an information disclosure vulnerability in Microsoft Windows. The vulnerability involved an attacker forcing an encrypted SSL 2.0 session with a WebDAV server that had SSL 2.0 enabled, then using a man-in-the-middle attack to decrypt portions of the encrypted traffic. This tag is relevant for users interested in legacy protocol vulnerabilities, Windows security patches, and the risks associated with enabling outdated encryption standards like SSL 2.0.
Severity Rating: Important
Revision Note: V1.0 (August 11, 2015): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow information disclosure if an attacker forces an encrypted Secure Socket Layer (SSL) 2.0 session with a...