Avaya DECT Products Information Disclosure Weakness
BID:33709
Info
Avaya DECT Products Information Disclosure Weakness
| Bugtraq ID: | 33709 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 03 2009 12:00AM |
| Updated: | Feb 11 2009 08:08PM |
| Credit: | Various researchers from Technical University of Darmstadt |
| Vulnerable: |
Avaya ISDN DECT 0 Avaya IP DECT 0 |
| Not Vulnerable: | |
Discussion
Avaya DECT Products Information Disclosure Weakness
Avaya products that use the DECT wireless standard are prone to an information-disclosure weakness.
An attacker can exploit this issue to obtain sensitive information that may aid in further attacks.
Avaya products that use the DECT wireless standard are prone to an information-disclosure weakness.
An attacker can exploit this issue to obtain sensitive information that may aid in further attacks.
Exploit / POC
Avaya DECT Products Information Disclosure Weakness
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: The reporters of this issue state that they have developed a proof of concept demonstrating this issue.
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: The reporters of this issue state that they have developed a proof of concept demonstrating this issue.
Solution / Fix
Avaya DECT Products Information Disclosure Weakness
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Avaya DECT Products Information Disclosure Weakness
References:
References:
- Avaya Homepage (Avaya Inc.)
- DECT security (Andreas Schuler, Erik Tews, Ralf-Philipp Weinmann)
- Vulnerabilities in the Digital Enhanced Cordless Telecommunications (DECT) Wirel (Avaya)