PT-2022-7725 · Telecommunication · Samwin Contact Center Suite+1
Max Moser
+1
·
Published
2022-05-24
·
Updated
2022-06-08
·
CVE-2013-10002
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Telecommunication Software SAMwin Contact Center Suite version 5.1
Description
A critical issue affects the function
getCurrentDBVersion in the library SAMwinLIBVB.dll of the credential handler, allowing authentication with hard-coded credentials.Recommendations
For Telecommunication Software SAMwin Contact Center Suite version 5.1, upgrade to version 6.2 to address this issue.
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Samwin Contact Center Suite
Samwinlibvb.Dll