CVE-2018-11639
03.07.2018, 17:29
Plaintext Storage of Passwords within Cookies in /var/www/xms/application/controllers/verifyLogin.php in the administrative console in Dialogic PowerMedia XMS before 3.5 SU2 allows remote attackers to access a user's password in cleartext.Enginsight
Vendor | Product | Version |
---|---|---|
dialogic | powermedia_xms | 𝑥 ≤ 3.5 |
dialogic | powermedia_xms | 3.5:su1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration