Vulnerability Details CVE-2002-1934
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 2.0.1 leaks sensitive information during boot-up, which allows attackers to obtain the MD5 hash of the Admin password, MD5 hash of the physical password, and other registration information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.4%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2002-1934
-
cpe:2.3:h:pingtel:xpressa:1.2.5
-
cpe:2.3:h:pingtel:xpressa:1.2.7.4
-
cpe:2.3:h:pingtel:xpressa:1.2.8
-
cpe:2.3:h:pingtel:xpressa:2.0
-
cpe:2.3:h:pingtel:xpressa:2.0.1