CVE

Id
11712  
CVE No.
CVE-2005-0506  
Status
Candidate  
Description
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames and passwords and impersonate other users via keys such as AvayaIP400Generic.  
Phase
Assigned (20050222)  
Votes
None (candidate not yet proposed)  
Comments