Security Advisory

CVE-2001-1254

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2002-05-03 04:00:00
Last updated 2024-08-08 04:51:07
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing.