Skip to main content

SSL Certificate

Description

The SSL certificate found on the website is no longer valid. This is most probably due to the fact that the SSL certificate is expired.

Remediation

Purchase a new SSL certificate.

Configuration

Identifier: protocol/ssl_certificate

Examples

Ignore this check

{
"checks": {
"protocol/ssl_certificate": {
"skip": true
}
}
}

Score

  • Escape Severity: HIGH
    • OWASP: API2:2023
    • PCI DSS: 6.5.4
    • CWE
      • 295
      • 319
    • WASC: WASC-04

CVSS

  • CVSS_VECTOR: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:H/RL:O/RC:C
  • CVSS_SCORE: 7.2

References