VulnerabilityModified
CVE-2008-6579
Nortel Communication Server 1000 4.50.x allows remote attackers to obtain Web application structure via unknown vectors related to "web resources to phones and administrators."
MEDIUM 5.0EPSS 1.49%
Does this matter?
Lower severity and a low EPSS score (1.49%). Track it; it rarely justifies an emergency change on its own.
Description
Nortel Communication Server 1000 4.50.x allows remote attackers to obtain Web application structure via unknown vectors related to "web resources to phones and administrators."
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.49% probability · 73th percentile
- CISA KEV
- Not listed
- Affected
- nortel/cs1000
- Source
- cve@mitre.org
References
- http://osvdb.org/44377
- http://secunia.com/advisories/29747
- http://securitytracker.com/id?1019846
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=713455Vendor Advisory
- http://www.securityfocus.com/bid/28691
- http://www.voipshield.com/research-details.php?id=28
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41805
- http://osvdb.org/44377
- http://secunia.com/advisories/29747
- http://securitytracker.com/id?1019846
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=713455Vendor Advisory
- http://www.securityfocus.com/bid/28691
- http://www.voipshield.com/research-details.php?id=28
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41805
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.