Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-68jq-f8j4-qrjp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A key length vulnerability in the implementation of the SRTP 128-bit key on Mitel 6800 and 6900 SIP series phones, versions 5.1.0.2051 SP2 and earlier, could allow an attacker to launch a man-in-the-middle attack when SRTP is used in a call. A successful exploit may allow the attacker to intercept sensitive information.

A key length vulnerability in the implementation of the SRTP 128-bit key on Mitel 6800 and 6900 SIP series phones, versions 5.1.0.2051 SP2 and earlier, could allow an attacker to launch a man-in-the-middle attack when SRTP is used in a call. A successful exploit may allow the attacker to intercept sensitive information.

EPSS

Процентиль: 30%
0.00111
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.9
nvd
почти 6 лет назад

A key length vulnerability in the implementation of the SRTP 128-bit key on Mitel 6800 and 6900 SIP series phones, versions 5.1.0.2051 SP2 and earlier, could allow an attacker to launch a man-in-the-middle attack when SRTP is used in a call. A successful exploit may allow the attacker to intercept sensitive information.

EPSS

Процентиль: 30%
0.00111
Низкий

Дефекты

CWE-319