CVE-2013-6169: Process-One Ejabberd
Medium severity, CVSS 4.3. EPSS: 1.6% chance of exploitation in the next 30 days.
The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it easier for remote attackers to obtain sensitive information via a brute-force attack.
Affected products
- Process-One Ejabberd: up to and including 2.1.12; version 0.9 only; version 0.9.1 only; version 0.9.8 only; version 1.0.0 only; version 1.1.0 only; …
Published 2013-10-17. Last modified 2026-06-17.