Security Advisory
CVE-2005-0506
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames and passwords and impersonate other users via keys such as AvayaIP400Generic.