CVE Vulnerabilities

CVE-2005-0506

Published: Mar 14, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames and passwords and impersonate other users via keys such as AvayaIP400Generic.

Affected Software

Name Vendor Start Version End Version
Ip_office_phone_manager Avaya * *
Ip_soft_phone Avaya * *

References