PT-2008-5636 · Cisco · Cisco Linksys Wvc54Gc

CVE-2008-4390

·

Published

2008-12-09

·

Updated

2024-01-25

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Cisco Linksys WVC54GC wireless video camera versions prior to firmware 1.25
Description: The issue allows remote attackers to obtain sensitive information, such as passwords, by sniffing the network. This is because the device sends cleartext configuration data in response to a remote-management command from the Setup Wizard.
Recommendations: For versions prior to firmware 1.25, update to firmware 1.25 or later to resolve the issue. As a temporary workaround, consider restricting remote-management access to the device until the update can be applied.

Fix

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-4390

Affected Products

Cisco Linksys Wvc54Gc