Hard-coded Credentials Vulnerability in Dialogic PowerMedia XMS Administrative Console

Hard-coded Credentials Vulnerability in Dialogic PowerMedia XMS Administrative Console

CVE-2018-11641 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Use of Hard-coded Credentials in /var/www/xms/application/controllers/gatherLogs.php in the administrative console in Dialogic PowerMedia XMS through 3.5 allows remote attackers to interact with a web service.

Learn more about our Web App Pen Testing.