Avaya VPNRemote before 4.2.33 stores credentials in cleartext in process memory, which allows attackers to obtain the VPN users credentials.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vpnremote | Avaya | 4.2.23 (including) | 4.2.23 (including) |
Vpnremote | Avaya | 4.2.24 (including) | 4.2.24 (including) |
Vpnremote | Avaya | 4.2.26 (including) | 4.2.26 (including) |
Vpnremote | Avaya | 4.2.29 (including) | 4.2.29 (including) |
Vpnremote | Avaya | 4.2.30 (including) | 4.2.30 (including) |
Vpnremote | Avaya | 4.2.32 (including) | 4.2.32 (including) |