Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web interface for Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 uses Base64 encoded usernames and passwords for HTTP basic authentication, which allows remote attackers to steal and easily decode the passwords via sniffing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pingtel xpressa SIP-based voice-over-IP电话加密漏洞
Vulnerability Description
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5版本到1.2.7.4版本的web界面对HTTP基础认证使用Base64编码的用户名和密码,远程攻击者可以借助嗅探来窃取以及轻易地解码密码。
CVSS Information
N/A
Vulnerability Type
N/A