PT-2008-5636 · Cisco · Cisco Linksys Wvc54Gc

Published

2008-12-09

·

Updated

2024-01-25

·

CVE-2008-4390

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Cisco Linksys WVC54GC wireless video camera versions prior to firmware 1.25
Description: The issue allows remote attackers to obtain sensitive information, such as passwords, by sniffing the network. This is because the device sends cleartext configuration data in response to a remote-management command from the Setup Wizard.
Recommendations: For versions prior to firmware 1.25, update to firmware 1.25 or later to resolve the issue. As a temporary workaround, consider restricting remote-management access to the device until the update can be applied.

Fix

Cleartext Transmission of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2008-4390

Affected Products

Cisco Linksys Wvc54Gc