The SIP implementation on the Linksys SPA2102 phone adapter provides hashed credentials in a response to an invalid authentication challenge, which makes it easier for remote malicious users to obtain access via a brute-force attack, related to a "SIP Digest Leak" issue.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linksys spa2102_firmware - |