CVE Vulnerabilities

CVE-2002-0674

Published: Jul 23, 2002 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not time out an inactive administrator session, which could allow other users to perform administrator actions if the administrator does not explicitly end the authentication.

Affected Software

Name Vendor Start Version End Version
Xpressa Pingtel 1.2.5 (including) 1.2.5 (including)
Xpressa Pingtel 1.2.7.4 (including) 1.2.7.4 (including)

References