Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control allowing a remote attackers to cause a denial of service via opening a connection on port 8083 to a device running the Five9 SoftPhone(issue 1 of 2).
References
Link | Resource |
---|---|
https://0tkombo.wixsite.com/0tkombo/blog/five9-dos-websocket-access | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-03-15T22:00:00
Updated: 2019-03-15T21:57:01
Reserved: 2018-08-17T00:00:00
Link: CVE-2018-15508
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-03-21T16:00:21.280
Modified: 2019-10-03T00:03:26.223
Link: CVE-2018-15508
JSON object: View
Redhat Information
No data.
CWE