Vulnerability Details CVE-2002-1934
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 2.0.1 leaks sensitive information during boot-up, which allows attackers to obtain the MD5 hash of the Admin password, MD5 hash of the physical password, and other registration information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 64.4%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-1934
-
cpe:2.3:h:pingtel:xpressa:1.2.5
-
cpe:2.3:h:pingtel:xpressa:1.2.7.4
-
cpe:2.3:h:pingtel:xpressa:1.2.8
-
cpe:2.3:h:pingtel:xpressa:2.0
-
cpe:2.3:h:pingtel:xpressa:2.0.1