Описание
Netfone.exe of NetTelephone 3.5.6 uses weak encryption for user PIN's and stores user account numbers in plaintext in the HKEY_CURRENT_USER\Software\MediaRing.com\SDK\NetTelephone\settings registry key, which could allow local users to gain unauthorized access to NetTelephone accounts.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:nettelephone:nettelephone:3.5.6:*:*:*:*:*:*:*
EPSS
Процентиль: 12%
0.00041
Низкий
4.6 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Netfone.exe of NetTelephone 3.5.6 uses weak encryption for user PIN's and stores user account numbers in plaintext in the HKEY_CURRENT_USER\Software\MediaRing.com\SDK\NetTelephone\settings registry key, which could allow local users to gain unauthorized access to NetTelephone accounts.
EPSS
Процентиль: 12%
0.00041
Низкий
4.6 Medium
CVSS2
Дефекты
NVD-CWE-Other