Security Advisory

CVE-2016-6537

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-09-19 01:00:00
Last updated 2024-08-06 01:36:27
Assigner certcc
State PUBLISHED

Description

AVer Information EH6108H+ devices with firmware X9.03.24.00.07l store passwords in a cleartext base64 format and require cleartext credentials in HTTP Cookie headers, which allows context-dependent attacks to obtain sensitive information by reading these strings.