6.4
CVSSv2

CVE-2002-0769

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The web-based configuration interface for the Cisco ATA 186 Analog Telephone Adaptor allows remote malicious users to bypass authentication via an HTTP POST request with a single byte, which allows the malicious users to (1) obtain the password from the login screen, or (2) reconfigure the adaptor by modifying certain request parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ata-186

Exploits

source: wwwsecurityfocuscom/bid/4711/info The Cisco ATA-186 Analog Telephone Adapter is a hardware device designed to interface between analog telephones and Voice over IP (VoIP) It includes support for web based configuration Reportedly, HTTP requests consisting of a single character will cause the device to disclose sensitive configu ...