CVE-2019-17393

CVE-2019-17393

The Customer’s Tomedo Server in Version 1.7.3 communicates to the Vendor Tomedo Server via HTTP (in cleartext) that can be sniffed by unauthorized actors. Basic authentication is used for the authentication, making it possible to base64 decode the sniffed credentials and discover the username and password.

Source: CVE-2019-17393

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다