RSS   Vulnerabilities for 'Ivr pro'   RSS

2014-01-27
 
CVE-2013-6838

CWE-310
 

 
An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IVR Pro (VIP2000) 9.0.3 (rel903), when using OpenVZ and fallback customization, uses the same SSH private key across different customers' installations, which allows remote attackers to gain privileges by leveraging knowledge of this key.

 

 >>> Vendor: Enghouseinteractive 2 Products
Ivr pro
Web chat


Copyright 2024, cxsecurity.com

 

Back to Top