← Back

CVE-2013-2566

Low

Description

The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.

Scores & Signals

CVSS 3.0 5.9 — MEDIUM
EPSS score 0.9144 (99.7th percentile)
CISA KEV No
Affected Oracle Communications Application Session Controller
Published 2013-03-15

Sources