CVE-2002-0670

The web interface for Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 uses Base64 encoded usernames and passwords for HTTP basic authentication, which allows remote attackers to steal and easily decode the passwords via sniffing.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:h:pingtel:xpressa:1.2.5:*:*:*:*:*:*:*
cpe:2.3:h:pingtel:xpressa:1.2.7.4:*:*:*:*:*:*:*

Information

Published : 2002-07-22 21:00

Updated : 2008-09-05 13:28


NVD link : CVE-2002-0670

Mitre link : CVE-2002-0670


JSON object : View

Advertisement

dedicated server usa

Products Affected

pingtel

  • xpressa