CVE-2001-1425
Last modified
CVE-2001-1425 is a vulnerability of currently unknown severity. The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.. EPSS estimates a 3.74% chance of exploitation in the next 30 days.
Description
The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Alcatel | Speed Touch Home | khdsaa.108 |
| Alcatel | Speed Touch Home | khdsaa.132 |
| Alcatel | Speed Touch Home | khdsaa.133 |
| Alcatel | Speed Touch Home | khdsaa.134 |
References
- http://www.cert.org/advisories/CA-2001-08.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/243592US Government Resource
- http://www.securityfocus.com/bid/2568Vendor Advisory
- http://www.cert.org/advisories/CA-2001-08.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/243592US Government Resource
- http://www.securityfocus.com/bid/2568Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-1425?
How severe is CVE-2001-1425?
How do I fix CVE-2001-1425?
Are you affected by CVE-2001-1425?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
