Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-0374

Опубликовано: 22 янв. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 has multiple undocumented ports available, which (1) might allow remote attackers to obtain sensitive information, such as memory contents and internal operating-system data, by directly accessing the VxWorks WDB remote debugging ONCRPC (aka wdbrpc) on UDP 17185, (2) reflect network data using echo (TCP 7), or (3) gain access without authentication using rlogin (TCP 513).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:h:advantage_century_telecommunication:p202s:1.01.21_firmware_1.1.21:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01068
Низкий

7.5 High

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
почти 4 года назад

Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 has multiple undocumented ports available, which (1) might allow remote attackers to obtain sensitive information, such as memory contents and internal operating-system data, by directly accessing the VxWorks WDB remote debugging ONCRPC (aka wdbrpc) on UDP 17185, (2) reflect network data using echo (TCP 7), or (3) gain access without authentication using rlogin (TCP 513).

EPSS

Процентиль: 77%
0.01068
Низкий

7.5 High

CVSS2

Дефекты

CWE-287