CVE-2008-6797: High severity mitel nupoint messenger vulnerability
The server in Mitel NuPoint Messenger R11 and R3 sends usernames and passwords in cleartext to Exchange servers, which allows remote attackers to obtain sensitive information by sniffing the network.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6797?
CVE-2008-6797 is considered a medium severity vulnerability due to the potential exposure of sensitive credentials in cleartext.
How do I fix CVE-2008-6797?
To fix CVE-2008-6797, upgrade to a patched version of Mitel NuPoint Messenger that addresses the cleartext transmission issue.
Who is affected by CVE-2008-6797?
Users of Mitel NuPoint Messenger versions R3 and R11 are affected by CVE-2008-6797.
What information can attackers obtain through CVE-2008-6797?
Attackers can obtain usernames and passwords transmitted in cleartext to Exchange servers due to CVE-2008-6797.
How can I prevent attacks related to CVE-2008-6797?
To prevent attacks, ensure that network traffic is encrypted and that you update to a secure version of Mitel NuPoint Messenger.