PT-2023-16198 · Akuvox · Akuvox E11

Amir Preminger

+1

·

Published

2023-03-13

·

Updated

2023-03-16

·

CVE-2023-0346

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Akuvox E11 (affected versions not specified)
Description The issue concerns the Akuvox E11 cloud login, which is performed through an unencrypted HTTP connection. This allows an attacker to potentially gain access to the Akuvox cloud and device if the MAC address of a device is known.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-0346

Affected Products

Akuvox E11