← Back
CVE-2013-2566
LowDescription
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.
Scores & Signals
| CVSS 3.0 | 5.9 — MEDIUM |
| EPSS score | 0.9144 (99.7th percentile) |
| CISA KEV | No |
| Affected | Oracle Communications Application Session Controller |
| Published | 2013-03-15 |
Sources
- CVE-2013-2566 nvd — 2013-03-15