The elliptic curve cryptography (ECC) subsystem in OpenSSL 1.0.0d and earlier, when the Elliptic Curve Digital Signature Algorithm (ECDSA) is used for the ECDHE_ECDSA cipher suite, does not properly implement curves over binary fields, which makes it easier for context-dependent attackers to determine private keys via a timing attack and a lattice calculation.
We have discovered 28,185 live websites that are affected by CVE-2011-1945.
Product | ![]() |
Category | Web Server Extensions |
Vulnerable Domains | 28,185 live websites (4.20% of OpenSSL install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 8 versions ( 20.00% of all versions) |
![]() | 5,930 websites |
![]() | 3,003 websites |
![]() | 1,853 websites |
![]() | 1,718 websites |
![]() | 1,713 websites |
![]() | 1,518 websites |
![]() | 1,187 websites |
![]() | 1,056 websites |
![]() | 808 websites |
.com | 9,470 websites |
.de | 2,141 websites |
.net | 1,969 websites |
.cz | 1,453 websites |
.org | 1,331 websites |
.ru | 1,303 websites |
.at | 963 websites |
.jp | 682 websites |
.fr | 489 websites |
.it | 485 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
**********.*****.de | ![]() | *,*** | |
******.com | ![]() | **,*** | |
*********.com | ![]() | **,*** | |
******.*****.org | ![]() | **,*** | |
******.com | ![]() | **,*** | |
*************.ru | ![]() | **,*** | |
********.com | ![]() | **,*** | |
********.*****.org | ![]() | **,*** | |
******.org | ![]() | **,*** | |
****.*******.ca | ![]() | **,*** |
FAQ