CVE-2001-1425 Information

Description

The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.

Reference

http://security.sdsc.edu/self-help/alcatel/alcatel-bugs.html http://www.cert.org/advisories/CA-2001-08.html http://www.kb.cert.org/vuls/id/243592 http://www.securityfocus.com/archive/1/175229 http://www.securityfocus.com/bid/2568 https://exchange.xforce.ibmcloud.com/vulnerabilities/6354

Share on: