CVE-2001-1425: High severity alcatel speed touch home vulnerability
The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1425?
CVE-2001-1425 is considered a high-severity vulnerability due to the potential for remote attackers to gain elevated privileges.
How do I fix CVE-2001-1425?
To mitigate CVE-2001-1425, upgrade the Alcatel Speed Touch firmware to a version that is not vulnerable, specifically beyond khdsaa.134.
What devices are affected by CVE-2001-1425?
CVE-2001-1425 affects Alcatel Speed Touch Home devices running firmware versions khdsaa.108, khdsaa.132, khdsaa.133, and khdsaa.134.
Can CVE-2001-1425 be exploited remotely?
Yes, CVE-2001-1425 can be exploited remotely by attackers using the challenge-response authentication mechanism.
What kind of attack is facilitated by CVE-2001-1425?
CVE-2001-1425 allows attackers to compute the challenge-response, enabling them to gain unauthorized access to the device.