logo

Database

Aws Certificate Expired

Description

Detects expired SSL/TLS certificates in AWS Certificate Manager (ACM). Expired certificates pose security risks by potentially disrupting HTTPS connections and triggering browser security warnings, which can impact service availability and user trust.

Weakness:

165 - Insecure service configuration - AWS

Category: Functionality Abuse

Detection Strategy

    Scans all SSL/TLS certificates managed in AWS Certificate Manager

    Reports a vulnerability when any certificate is found with a status of 'EXPIRED'

    Includes the certificate's ARN and expired status in the vulnerability report

Severity v4.0

1.3

Low

Method ID

CSPM-5TAIS

Technique

CSPM

Target

AWS

Technology

ACM

CWE ID(s)

CWE-306