The default configuration on OpenSSL before 0.9.8 uses MD5 for creating message digests instead of a more cryptographically strong…
mitre·CWE-327·Published 2005-09-16