The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
PoC: poodle-PoC
:poodle: Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566 :poodle:
PoC: poodle_protector
Python script for automatically protecting your systems against POODLE vulnerability (CVE-2014-3566)
PoC: VC-PoodlePOC
Vibe coded POC of exploitation of the POODLE CVE-2014-3566
PoC: poodle-attack-sandbox
Test code for poodle attack (CVE-2014-3566)
PoC: mangy-beast
CloudPassage Halo policy for detecting vulnerability to CVE-2014-3566 (AKA POODLE)
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free