ABOUT
Overview
Use Cases
Mapping Methodology
Scoring Rubric
Related Projects
ATT&CK OBJECTS
Matrix
Tactics
Techniques
MAPPING FRAMEWORKS
About Mappings
Amazon Web Services (AWS)
Azure
CVE
Google Cloud Platform (GCP)
NIST 800-53
M365
VERIS
You're currently viewing ATT&CK Version 9.0 Enterprise and CVE 10.21.2021.
Change versions here.
Home
Mapping Frameworks
CVE Home
n/a
CVE
CVE-2014-3566
Mappings
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
Mappings
ATT&CK Version
9.0
ATT&CK Domain
Enterprise
CVE
10.21.2021
Change Versions
Capability ID
Capability Description
Mapping Type
ATT&CK ID
ATT&CK Name
CVE-2014-3566
n/a
uncategorized
T1557
Man-in-the-Middle