Posted: 2016-04-22 19:49
Is WinSCP 5.7.6 which uses OpenSSL 1.0.1p Susceptible to the DROWN Vulnerability called out in CVE-2016-0800?
Location: Prague, Czechia
WinSCP does not support SSL 2.0 since version 4.3. So I believe it makes it immune to the DROWN.
Though the vulnerability is not described in detail from a client point of view.
You can post new topics in this forum
And it's free!