CVE Vulnerabilities

CVE-2008-6797

Published: May 07, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The server in Mitel NuPoint Messenger R11 and R3 sends usernames and passwords in cleartext to Exchange servers, which allows remote attackers to obtain sensitive information by sniffing the network.

Affected Software

NameVendorStart VersionEnd Version
Mitel_nupoint_messengerMitelr3 (including)r3 (including)
Mitel_nupoint_messengerMitelr11 (including)r11 (including)

References