7.5

CVE-2001-1425

The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AlcatelSpeed Touch Home Versionkhdsaa.108
AlcatelSpeed Touch Home Versionkhdsaa.132
AlcatelSpeed Touch Home Versionkhdsaa.133
AlcatelSpeed Touch Home Versionkhdsaa.134
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.74% 0.884
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://security.sdsc.edu/self-help/alcatel/alcatel-bugs.html
http://www.cert.org/advisories/CA-2001-08.html
US Government Resource
http://www.securityfocus.com/archive/1/175229
http://www.securityfocus.com/bid/2568
Vendor Advisory
http://www.kb.cert.org/vuls/id/243592
US Government Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/6354