Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7rg-rp2h-c9h8

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Verizon Wireless Network Extender SCS-26UC4 and SCS-2U01 does not use CAVE authentication, which makes it easier for remote attackers to obtain ESN and MIN values from arbitrary phones, and conduct cloning attacks, by sniffing the network for registration packets.

The Verizon Wireless Network Extender SCS-26UC4 and SCS-2U01 does not use CAVE authentication, which makes it easier for remote attackers to obtain ESN and MIN values from arbitrary phones, and conduct cloning attacks, by sniffing the network for registration packets.

EPSS

Процентиль: 75%
0.00896
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 12 лет назад

The Verizon Wireless Network Extender SCS-26UC4 and SCS-2U01 does not use CAVE authentication, which makes it easier for remote attackers to obtain ESN and MIN values from arbitrary phones, and conduct cloning attacks, by sniffing the network for registration packets.

EPSS

Процентиль: 75%
0.00896
Низкий

Дефекты

CWE-287