cve/2024/CVE-2024-36440.md
2024-08-23 18:19:28 +00:00

743 B

CVE-2024-36440

Description

An issue was discovered on Swissphone DiCal-RED 4009 devices. An attacker with access to the file /etc/deviceconfig may recover the administrative device password via password-cracking methods, because unsalted MD5 is used.

POC

Reference

Github