CVE-2002-0628

HIGHCVSS 7.5/10EPSS 2.19%

Last modified

CVE-2002-0628 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.. EPSS estimates a 2.19% chance of exploitation in the next 30 days.

Description

The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
2.19%

80.1th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
PolycomViewstation 1286.5.1
PolycomViewstation 1287.2
PolycomViewstation 5126.5.1
PolycomViewstation 5127.2
PolycomViewstation Dcp6.5.1
PolycomViewstation Dcp7.2
PolycomViewstation Fx Vs40004.1.5
PolycomViewstation H.3236.5.1
PolycomViewstation H.3237.2
PolycomViewstation Mp6.5.1
PolycomViewstation Mp7.2
PolycomViewstation Sp 3846.5.1
PolycomViewstation Sp 3847.2
PolycomViewstation V.356.5.1
PolycomViewstation V.357.2

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2002-0628?
The Telnet service for Polycom ViewStation before 7.2.4 does not restrict the number of failed login attempts, which makes it easier for remote attackers to guess usernames and passwords via a brute force attack.
How severe is CVE-2002-0628?
CVE-2002-0628 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 2.19% probability of exploitation in the next 30 days.
How do I fix CVE-2002-0628?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2002-0628?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST