Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control allowing a remote attackers to cause a denial of service via opening a connection on port 8083 to a device running the Five9 SoftPhone(issue 1 of 2).
References
Link | Resource |
---|---|
https://0tkombo.wixsite.com/0tkombo/blog/five9-dos-websocket-access | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-03-21 09:00
Updated : 2019-10-02 17:03
NVD link : CVE-2018-15508
Mitre link : CVE-2018-15508
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
five9
- agent_desktop_plus