Back to search
CVE-2001-1254
Published: May 3, 2002
Modified: Aug 8, 2024
PUBLISHED
Description
Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
3373
vdb-entry
x_refsource_BID
20010927 Two problems with Alexis/InternetPBX from COM2001
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now