Amazon AWS CloudFront TLSv1.2_2019 allows TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 and TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, which some entities consider to be weak ciphers.
The product uses a broken or risky cryptographic algorithm or protocol.
Link | Tags |
---|---|
https://stackoverflow.com/questions/62071604 | third party advisory |
https://aws.amazon.com/about-aws/whats-new/2020/07/cloudfront-tls-security-policy/ | vendor advisory |