A vulnerability in the web-based management interface of Cisco SPA100 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to access sensitive information on an affected device. The vulnerability is due to improper restrictions on configuration information. An attacker could exploit this vulnerability by sending a request to an affected device through the web-based management interface. A successful exploit could allow the attacker to return running configuration information that could also include sensitive information.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2019-10-16T18:36:37.695788Z
Updated: 2024-11-21T19:08:24.331Z
Reserved: 2019-08-20T00:00:00
Link: CVE-2019-15257
Vulnrichment
Updated: 2024-08-05T00:42:03.761Z
NVD
Status : Modified
Published: 2019-10-16T19:15:13.537
Modified: 2024-11-21T04:28:18.550
Link: CVE-2019-15257
Redhat
No data.