Back to Database
Status published
High
CVE-2013-4104
Cryptocat before 2.0.22 has weak encryption in the Socialist Millionnaire...
Vulnerability Description
Cryptocat before 2.0.22 has weak encryption in the Socialist Millionnaire Protocol
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-4104
Credits & Attribution
No credits recorded in the NVD database.
References
More from cryptocat project
View All →CVE-2013-4103
Cryptocat before 2.0.22 has Remote Script Injection due to improperly...
Critical
9.8
CVE-2013-4102
Cryptocat before 2.0.22 strophe.js Math.random() Random Number Generator Weakness...
Critical
9.1
CVE-2013-4101
Cryptocat before 2.0.22 Link Markup Decorator HTML Handling Weakness...
Medium
5.3
CVE-2013-4100
Cryptocat before 2.0.22 has Remote Denial of Service via username...
High
7.5
CVE-2013-2261
Cryptocat before 2.0.22 Chrome Extension 'img/keygen.gif' has Information Disclosure...
High
7.5
Affected Vendor
cryptocat project
View all reports →Affected Software
cryptocat
Vulnerable Versions:
0
Timeline
Official Publish:
November 4th, 2019
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.