2.1
CVSSv2

CVE-2018-11634

Published: 03/07/2018 Updated: 03/10/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Plaintext Storage of Passwords in the administrative console in Dialogic PowerMedia XMS prior to 3.5 SU2 allows local users to access the web application's user passwords in cleartext by reading /var/www/xms/xmsdb/default.db.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dialogic powermedia xms

dialogic powermedia xms 3.5