Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q96j-9qv9-3vw2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The PhonerLite phone before 2.15 provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.

The PhonerLite phone before 2.15 provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.

EPSS

Процентиль: 84%
0.02084
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
почти 6 лет назад

The PhonerLite phone before 2.15 provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote attackers to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.

EPSS

Процентиль: 84%
0.02084
Низкий