CVE-2015-0962: Barracuda Web Filter

Medium severity, CVSS 4.3. EPSS: 1.4% chance of exploitation in the next 30 days.

Barracuda Web Filter 7.x and 8.x before 8.1.0.005, when SSL Inspection is enabled, uses the same root Certification Authority certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship.

Affected products

  • Barracuda Web Filter: version 7.0 only; version 7.0.1 only; version 7.1.0 only; version 8.0 only; version 8.0.002 only; version 8.0.003 only

Published 2015-05-25. Last modified 2026-06-17.