Description
Missing password verification in the web interface on Gigaset Maxwell Basic VoIP phones with firmware 2.22.7 would allow a remote attacker (in the same network as the device) to change the admin password without authentication (and without knowing the original password).
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-10582 | Missing password verification in the web interface on Gigaset Maxwell Basic VoIP phones with firmware 2.22.7 would allow a remote attacker (in the same network as the device) to change the admin password without authentication (and without knowing the original password). |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T11:23:08.479Z
Reserved: 2018-10-31T00:00:00.000Z
Link: CVE-2018-18871
No data.
Status : Modified
Published: 2018-12-20T21:29:00.823
Modified: 2024-11-21T03:56:47.313
Link: CVE-2018-18871
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD