A vulnerability was found in Telecommunication Software SAMwin Contact Center Suite 5.1. It has been rated as critical. Affected by this issue is the function getCurrentDBVersion in the library SAMwinLIBVB.dll of the credential handler. Authentication is possible with hard-coded credentials. Upgrading to version 6.2 is able to address this issue. It is recommended to upgrade the affected component.
References
Link | Resource |
---|---|
http://www.modzero.ch/advisories/MZ-13-06_SAMwin_Architectural_Issues.txt | Third Party Advisory |
https://vuldb.com/?id.12788 | Third Party Advisory |
http://www.modzero.ch/advisories/MZ-13-06_SAMwin_Architectural_Issues.txt | Third Party Advisory |
https://vuldb.com/?id.12788 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:48
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.modzero.ch/advisories/MZ-13-06_SAMwin_Architectural_Issues.txt - Third Party Advisory | |
References | () https://vuldb.com/?id.12788 - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 6.4
v3 : 6.5 |
08 Jun 2022, 14:21
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://vuldb.com/?id.12788 - Third Party Advisory | |
References | (MISC) http://www.modzero.ch/advisories/MZ-13-06_SAMwin_Architectural_Issues.txt - Third Party Advisory | |
CPE | cpe:2.3:a:telecomsoftware:samwin_agent:5.01.19.06:*:*:*:*:*:*:* cpe:2.3:a:telecomsoftware:samwin_contact_center:5.1:*:*:*:*:*:*:* |
|
CWE | CWE-798 | |
CVSS |
v2 : v3 : |
v2 : 6.4
v3 : 9.1 |
24 May 2022, 17:22
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-05-24 16:15
Updated : 2024-11-21 01:48
NVD link : CVE-2013-10002
Mitre link : CVE-2013-10002
CVE.ORG link : CVE-2013-10002
JSON object : View
Products Affected
telecomsoftware
- samwin_agent
- samwin_contact_center
CWE
CWE-798
Use of Hard-coded Credentials