Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt HTTP sessions from operator workstations, which allows remote attackers to discover Administrator credentials by sniffing the network, aka Bug ID CSCtb83631.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2010-05-27T19:00:00
Updated: 2010-06-09T09:00:00
Reserved: 2010-02-10T00:00:00
Link: CVE-2010-0598
JSON object: View
NVD Information
Status : Modified
Published: 2010-05-27T19:30:01.437
Modified: 2010-06-13T19:16:49.063
Link: CVE-2010-0598
JSON object: View
Redhat Information
No data.
CWE