CVE-2005-3716

The SNMP daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has hard-coded public credentials that cannot be changed, which allows attackers to obtain sensitive information.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:utstarcom:f1000_wi-fi_firmware:2.0:*:*:*:*:*:*:*
cpe:2.3:h:utstarcom:f1000_wi-fi:-:*:*:*:*:*:*:*

History

13 Feb 2024, 16:48

Type Values Removed Values Added
First Time Utstarcom f1000 Wi-fi Firmware
Utstarcom f1000 Wi-fi
CVSS v2 : 5.0
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE NVD-CWE-Other CWE-798
CPE cpe:2.3:h:utstarcom:f1000_wi-fi_handset:2.0:*:*:*:*:*:*:* cpe:2.3:o:utstarcom:f1000_wi-fi_firmware:2.0:*:*:*:*:*:*:*
cpe:2.3:h:utstarcom:f1000_wi-fi:-:*:*:*:*:*:*:*
References (VUPEN) http://www.vupen.com/english/advisories/2005/2472 - (VUPEN) http://www.vupen.com/english/advisories/2005/2472 - Broken Link
References (SECUNIA) http://secunia.com/advisories/17629 - Vendor Advisory (SECUNIA) http://secunia.com/advisories/17629 - Broken Link, Vendor Advisory
References (FULLDISC) http://lists.grok.org.uk/pipermail/full-disclosure/2005-November/038834.html - Vendor Advisory (FULLDISC) http://lists.grok.org.uk/pipermail/full-disclosure/2005-November/038834.html - Broken Link, Vendor Advisory
References (BID) http://www.securityfocus.com/bid/15476 - (BID) http://www.securityfocus.com/bid/15476 - Broken Link, Third Party Advisory, VDB Entry

Information

Published : 2005-11-21 11:03

Updated : 2024-02-28 10:42


NVD link : CVE-2005-3716

Mitre link : CVE-2005-3716

CVE.ORG link : CVE-2005-3716


JSON object : View

Products Affected

utstarcom

  • f1000_wi-fi_firmware
  • f1000_wi-fi
CWE
CWE-798

Use of Hard-coded Credentials