PT-2018-10799 · Nec · Nec Univerge Sv9100 Webpro

Hyp3Rlinx

·

Publicado

2018-12-26

·

Atualizado

2021-09-13

·

CVE-2018-11742

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NEC Univerge Sv9100 WebPro version 6.00.00
Description The issue concerns cleartext password storage in the Web UI. This means that passwords are stored in a plaintext format, which can be easily accessed by unauthorized parties.
Recommendations For NEC Univerge Sv9100 WebPro version 6.00.00, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insufficiently Protected Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-11742

Produtos afetados

Nec Univerge Sv9100 Webpro