Server is vulnerable to the OpenSSL Padding Oracle vulnerability (CVE-2016-2107) and insecure


#1

I have already upgraded to Easy Engine 3.6.2, but my server is showing server is vulnerable to the OpenSSL Padding Oracle vulnerability (CVE-2016-2107) and insecure.

How I can fix it?


#2

Duplicate:

Take a look at: SSL Labs says SSL is vulnerable, gives grade F

Continuation from: https://github.com/EasyEngine/easyengine/issues/729

This should fix your issue.


#3

Thanks for a quick help. It worked and now I got B+, I have generated DH key but don’t know where to add the info for nginx.


#4

@web.techj

Source: https://github.com/EasyEngine/easyengine/issues/661


#5