'The DROWN' Attack vulnerability (wodSSH / wodSSH.NET)
Hi.
Since DROWN is related to SSL/TLS, wodSSH.NET is not vulnerable (different protocol).
As for wodFtpDLX.NET, it depends on the server if it has enabled SSLv2 or not. You can enforce use of TLS through SecureMethod property
so from client's perspective you don't even give ability for SSLv2 to be used.
I hope this helps!
Jasmine
Complete thread:
- 'The DROWN' Attack vulnerability - g_phanikiran, 2016-03-11, 12:59
- 'The DROWN' Attack vulnerability - Jasmine, 2016-03-11, 13:06