CRITICAL
Use of a Hard-coded Cryptographic Key used to protect cookie session data in /var/www/xms/application/config/config.php in the administrative console in Dialogic PowerMedia XMS through 3.5 allows remote attackers to bypass authentication
Published Jul 3, 2018
9.8
CRITICALCVSS 3.0
EPSS 2.00%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.