10
CVSSv2

CVE-2016-10512

Published: 30/09/2017 Updated: 11/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

MultiTech FaxFinder prior to 4.1.2 stores Passwords unencrypted for maintaining the test connectivity function of its LDAP configuration. These credentials are retrieved by the system when the LDAP configuration page is opened and are embedded directly into the HTML source code in cleartext.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

multitech faxfinder -

Exploits

Multitech RightFax Faxfinder versions prior to 412 suffer from a clear-text credential disclosure vulnerability ...